Psst! Did you know DevelopmentNow is a mobile web site design agency?

Contact us for help mobilizing your site, or to sign up for our beta Mobile Web SDK!
all groups > iis security > february 2007 >

iis security : IIS SMTP Open Relay


Santa
2/1/2007 8:43:01 AM
Hi

I have a IIS server configured with SMTP in a public ip address. SMTP i have
configured with "openrelay" which is vulnerable for the security threats.
Please tell me how to close the SMTP open relay in this server without
specifying a IP address or address ranges.
Becouse there are some web developers need to have a access to this server
and test the application to send mails through this SMTP relay.

Bernard Cheah [MVP]
2/2/2007 5:53:23 PM
What about authentication?
HOW TO: Set SMTP Security Options in Windows Server 2003
http://support.microsoft.com/?id=324285

--
Regards,
Bernard Cheah
http://www.iis.net/
http://www.iis-resources.com/
http://msmvps.com/blogs/bernard/


[quoted text, click to view]

Ken Schaefer
2/4/2007 10:43:14 PM
In addition to SMTP AUthentication mentioned by Bernard, you could have the
web developers host their applications on your web server. That way you only
need to allow relay to 127.0.0.1

Cheers
Ken


[quoted text, click to view]
AddThis Social Bookmark Button