[isalist] Re: Configuring ISA Server 2004 to allow email only from Frontbridge servers

  • From: "Thomas W Shinder" <tshinder@xxxxxxxxxxx>
  • To: <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 10 May 2006 11:06:20 -0500

why would you need to create an ISA firewall network for this?
 
Thomas W Shinder, M.D.
Site: www.isaserver.org <http://www.isaserver.org/> 
Blog: http://blogs.isaserver.org/shinder/
Book: http://tinyurl.com/3xqb7 <http://tinyurl.com/3xqb7> 
MVP -- ISA Firewalls

 


________________________________

        From: isalist-bounce@xxxxxxxxxxxxx
[mailto:isalist-bounce@xxxxxxxxxxxxx] On Behalf Of Scheele, Brian
        Sent: Wednesday, May 10, 2006 10:45 AM
        To: isalist@xxxxxxxxxxxxx
        Subject: [isalist] Configuring ISA Server 2004 to allow email
only from Frontbridge servers
        
        
        Our MX record for our email domain points to
mail.frontbridge.com.
         
        Frontbridge filters the email, then forwards it to our IP
address.
         
        I added a network, called Frontbridge to my ISA server with the
list of IP addresses that Frontbridge sends from.  All other SMTP
traffic should be blocked since that traffic would bypass Frontbridge.
         
        ISA server now blocks all email that Frontbridge forwards (even
if I do not add the Frontbridge network to any firewall policies).  The
result code is 
         
        0xc0040014 FWX_E_FWE_SPOOFING_PACKET_DROPPED
         
        I have to delete the network that I created so that email can
come in.
         
        Does anyone know what I am doing wrong, or know how to properly
set up ISA Server to allow email to come in from only specific IP
addresses?  We have only one external IP address.
         
        Thanks,
         
        Brian Scheele
        Systems Administrator
         
          <http://www.clarkfilter.com/Default.aspx> 
        3649 Hempland Road
        Lancaster, PA 17601-1393
        Phone     (717) 285-8050
        Fax       (717) 285-8051
         

JPEG image

Other related posts: