Security with OWA and RPC over HTTP

  • From: Raji Arulambalam <rajia@xxxxxxxxxxxxxx>
  • To: "'[ISAserver.org Discussion List]'" <isalist@xxxxxxxxxxxxx>
  • Date: Fri, 20 Feb 2004 18:31:44 +1300

I have questions about security when publishing OWA and RPC over HTTP
through ISA server using SSL with certificates.

These procedures connect straight into the Exchange Server stores/mailboxes
and these users are able to upload attachments into Exchange, bypassing
normal gateway AV scanning. It is possible to introduce nasties into the
systems.

Is there anyway that you are able to either scan these attachments or are
there other solutions apart from installing an AV product into Exchange.

Using Exchange 2003 server with Windows 2003 server.

Any pointers would be appreciated.


ARaji

Email disclaimer: This email and any attachments are confidential. If you are 
not the intended recipient, do not copy, disclose or use the contents in any 
way. If you receive this message in error, please let us know by return email 
and then destroy the message. Environment Bay of Plenty is not responsible for 
any changes made to this message and/or any attachments after sending.
******************************************************
This e-mail has been checked for viruses and no viruses were detected.


Other related posts: