Placing an Exchange Front-end server in the DMZ does nothing to increase security. This configuration increases complexity and opens many holes through your firewall. How many of those firewalls are inspecting that traffic? An Exchange Front-end server should be implemented for performance and to serve OWA in multiple mailbox (back-end) server configurations. The best solution for offering secure remote access to Exchange Server is via ISA Server, whether this is the edge-firewall or as a bastion host in the DMZ. This presentation by Steve Riley is an excellent resource for explaining why ISA Server offers the best protection for access to Exchange. Everyone involved in deploying or administering Exchange should read it.
search
I’m speaking here:
-
Latest Articles
- Slide deck from Synergy Geek Speak Session – User Environment Management smackdown
- App-V Books from Packt Publishing available with discounts in May
- BriForum talk – Office and App-V
- Migrating packages from App-V 4.x to App-V 5.0
- Citrix Technology Professional Award
- Configuring Hyper-V Virtual Networks with PowerShell
- Client Side Performance Testing coming to Login VSI
- Delivering Office with App-V – Sequencer Recommendations & Best Practices
- App-V White Papers
- Mailbag – Deploying multiple editions of Office 2010 with App-V
Advertisement
Archives
Legal stuff
© Aaron Parker, 2005 - 2012.Licensed under a Creative Commons Attribution-Noncommercial-Share Alike 3.0 Unported License

