This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

ES100 deplyment Setup

Hi,

i would like to ask if anyone have an idea if how to setup Sophos email appliance facing the internet not passing traffic to firewall.

will configure the appliance with mail Public IP. may i ask how would i setup the appliance to communicate and pass email to internal email server?

thanks for the help.

:33613


This thread was automatically locked due to age.
Parents
  • Hi tedz,

    To clarify - Even when running on a public IP you should still configure the appliance behind some kind of firewall.  This will offer protection against who can attempt to access the appliance GUI, amongst other things.  

    To pass e-mail to the internal mail-server you just need port 25 connectivity between the Appliance and the internal MTA.  How you do this will depend on your network setup.

    Usually you can utilize a 'DMZ' feature on your firewall/router for this, which will place the email appliance on a public IP, whilst still handling routing between the LAN and the DMZ.

    An alternative is that the gateway between the appliance and the LAN has a port-forwarding rule so that port 25 traffic from the appliance IP is sent to the correct e-mail server.

    Thanks,

    Tom.

    :33811
Reply
  • Hi tedz,

    To clarify - Even when running on a public IP you should still configure the appliance behind some kind of firewall.  This will offer protection against who can attempt to access the appliance GUI, amongst other things.  

    To pass e-mail to the internal mail-server you just need port 25 connectivity between the Appliance and the internal MTA.  How you do this will depend on your network setup.

    Usually you can utilize a 'DMZ' feature on your firewall/router for this, which will place the email appliance on a public IP, whilst still handling routing between the LAN and the DMZ.

    An alternative is that the gateway between the appliance and the LAN has a port-forwarding rule so that port 25 traffic from the appliance IP is sent to the correct e-mail server.

    Thanks,

    Tom.

    :33811
Children
No Data