To continue reading for free, register below or login
To read more you must become a member of SearchExchange.com
');
// -->

There are very few, if any, situations that require your Exchange server to be an open relay. For most SBS scenarios, you will not need to permit any relay, even from workstations. Therefore, you can configure your default SMTP virtual server in the Exchange System Manager to deny relay from all hosts, except for those that you may specify.
The situation that you describe, in which the From field of messages claims to be from users on your network, is known as "spoofing." This is a tactic commonly used by spammers. Most anti-spam services, whether outsourced or hosted internally, are sophisticated enough to recognize spoof attempts and will block these messages. You can also setup a SPF record for your domain name that identifies which servers on the Internet are authorized to send on your behalf.
Do you have comments on this Ask the Expert Q&A? Let us know.
|