Page 1 of 1

DMZ SPAM filters

Posted: Wed Mar 07, 2007 6:55 pm
by wmcdonald
Now that I have migrated over to Scalix from Lotus Notes, I want to use the same set up with my TMDA spam filter. I like having the SPAM filter and AntiVirus on a separate server and away from my LAN.

Under Notes, I had a private network between the Internet and my LAN that I used as a DMZ. All inbound email was sent to the TMDA server where TMDA and ClamAV would do their thing and then forward the email to the Notes server that had one NIC on the corporate LAN and another NIC on the DMZ as does my Scalix server.

Notes would send out email to the Internet without going back to the TMDA server but would only accept inbound email from TMDA.

My question is, where do I find info on setting up this in Scalix? Can Scalix be told to only accept email from only one server but send outbound email as normal?

Thanks

Posted: Wed Mar 07, 2007 8:31 pm
by kanderson
The easiest thing will be to just not allow direct access to Scalix from the outside world, and forward email from the filter to Scalix on port 25. By default, Scalix will send mail directly to the recipient.

The config file whre you'd limit who can submit a message (without being authenticated) is in /var/opt/scalix/??/s/sys/smtpd.cfg. The file is well documented. You'll need to restart the smtpd service afterwards with "omoff -d0 -w smtpd && omon smtpd"

Web connections are always authenticated, as are MAPI. So it's just POP and IMAP that might give you action with it. For them, just enable authentication.

Kev.