[ale] Re: Sendmail Proxy between internet and NT 4.0 withExchange 5.0

Jonathan Glass jonathan.glass at ibb.gatech.edu
Fri Feb 21 09:18:01 EST 2003


On Fri, 2003-02-21 at 09:01, Robert Gash wrote:
> On Fri, 21 Feb 2003 07:39:04 -0600, Joe was overheard saying:
> |  I have a fresh install of slackware 8.1 on a machine ready for =
> |  configuration.
> |  
> |  Can someone point me in the right direction?
> 
> Joe,
> 
> The setup process is pretty simple, assuming you have the access and
> mailertable features in your Sendmail configuration the config is
> quick and painless--a few lines in mailertable and access and you're
> done.
> 
> I had to create my own Sendmail config since OpenBSD/3.2 doesn't
> include access_db or mailertable in the default config, but it was a
> very simple process (< 1hr from start of Google'ing to working relay).
> Our system works great proxying access to our exchange box, and as an
> added measure of security we've configured exchange to always send
> outbound Email to the bastion host as well so we aren't exposed during
> the outbound transmission either.
> 
> http://www.ofb.net/~jheiss/sendmail/proxy.shtml
> 
> -R
> 
> -- 
> Robert Gash, gashalot at gashalot.com
> (Web) http://gashalot.com/
> (PGP) http://gashalot.com/pgpkeys.txt
> 
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://www.ale.org/mailman/listinfo/ale

I took it one step further, adding in the sanitizer from
http://www.impsec.org/email-tools/sanitizer-intro.html
John Hardin has instructions on setting up the mail relay box, and on
how to configure Exchange.

Throw in SpamAssassin (http://www.spamassassin.org/) to kill spam, then
add in some anti-virus software like Amavis (http://www.amavis.org)
(article http://www.sans.org/rr/email/amavis.php), or Sophos
(http://www.sophos.com/) and you have a truly powerful mail relay to
protect Exchange.
-- 
Jonathan Glass
Systems Support Specialist II
Institute for Bioengineering & Bioscience
Georgia Institute of Technology
404.385.0127

 This is a digitally signed message part




More information about the Ale mailing list