Securing Exchange Server (2003) - What do you do? SPF?

Associate
Joined
2 Nov 2007
Posts
488
Hello,

Im just playing around with SBS 2003 in VMware Workstation and was wondering what post installation steps you take after installing vanilla Exchange Server 2003 SP2.

Ive got antispam software installed and have just setup the SMTP banner. What about SPF? Ive added the TXT record into the DNS (via the registrar's control panel) - is this ok: v=spf1 mx:mail.domainco.uk ~all

What else should i be doing? What other steps do you take with your mail servers?

Cheers
 
Thanks. Im playing around with Sophos PureMessage and am pretty impressed with it.

Was more wondering though Exchange specific settings (such as IMF etc) rather than comparing various antispam products.
 
To be honest I wouldn't let exchange talk to the internet but that's a higher end measure, intelligent firewalling is the only thing a small install really needs in terms of mail (and keeping up to date with patching).
 
Exchange is fairly secure out the box. Disable any features you dont need. In an idle world you'd have the different roles running on different machines but things arent always that easy.
 
As above, Exchange is pretty good out the box plus using a bit of common sence as well.

Here are a good few links.

Exchange 2003

http://www.msexchange.org/articles_tutorials/exchange-server-2003/security-message-hygiene/

Exchange 2007

http://www.msexchange.org/articles_tutorials/exchange-server-2007/security-message-hygiene/

Exchange 2010

http://www.msexchange.org/articles_tutorials/exchange-server-2010/security-message-hygiene/

Another handy site to bookmark is.

http://msexchangeteam.com/

EDIT: For reference we use Message Labs service, but i have started to noticed the odd little things starting to get through on the whole though its pretty good.
 
Last edited:
Back
Top Bottom