DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
Vigor3900 - restrict port 25
- darthter
- Topic Author
- Offline
- New Member
Less
More
- Posts: 6
- Thank you received: 0
23 Jan 2014 11:13 #78814
by darthter
Vigor3900 - restrict port 25 was created by darthter
Does anyone know if its possible to configure the NAT/firewall settings on the Vigor3900 to prohibit connections to the Internet on port 25 except from real mail servers???
I have been informed that this should help eliminate potential threats from spam bots etc.
I have been informed that this should help eliminate potential threats from spam bots etc.
Please Log in or Create an account to join the conversation.
- sicon
- Offline
- Contributor
Less
More
- Posts: 642
- Thank you received: 0
31 Jan 2014 16:23 #78912
by sicon
Replied by sicon on topic Re: Vigor3900 - restrict port 25
Are you talking about your own mail servers... So only your server can send mail out and not PCs etc if there are infected in some way?
If so then Create a Rule with the LAN source as Any, destination Any and sevivce at port 25 then block if no further match
Under that rule create one with the source as the mail servers, destination ANY ,Service 25 and PASS.
If it's just one exchange server I usually cheat and create a rule with the Source address as the Exchange IP (invert selection) Destination ANY service 25 and Block
If so then Create a Rule with the LAN source as Any, destination Any and sevivce at port 25 then block if no further match
Under that rule create one with the source as the mail servers, destination ANY ,Service 25 and PASS.
If it's just one exchange server I usually cheat and create a rule with the Source address as the Exchange IP (invert selection) Destination ANY service 25 and Block
Please Log in or Create an account to join the conversation.
Moderators: Sami
Copyright © 2024 DrayTek