Firewall, VPN, IDS, and Router Tips #13: Windows 2000 Exchange Server in the DMZ |
Hits: Failed to execute CGI : Win32 Error Code = 3
|
Windows 2000 : DMZ -> Intranet
Hive: HKEY_LOCAL_MACHINE
Key: System\CurrentControlSet\Services\NTDS\Parameters
Name: TCP/IP Port
Type: REG_DWORD
Value: decimal value greater than 1024
Windows 2000 : Internet -> DMZ
You need to open TCP 25 SMTP ( internet<->DMZ ) to communicate with other email servers on the internet.
Exchange 2000 supports an assortment of client access types including MAPI, IMAP, POP3, or Web. You will need to allow the appropriate port for whatever client access type(s) you allow. When accessing Microsoft Exchange, MAPI is the client access protocol of choice for communication between e-mail client and server. For MAPI to grant access to your internet Outlook clients:
Hive: HKEY_LOCAL_MACHINE
Key: System\CurrentControlSet\Services\MSExchangeSA\Parameters
Name: TCP/IP Port
Type: REG_DWORD
Value: decimal value greater than 1024
Hive: HKEY_LOCAL_MACHINE
Key: System\CurrentControlSet\Services\MSExchangeSA\Parameters
Name: TCP/IP NSPI port
Type: REG_DWORD
Value: decimal value greater than 1024
Hive: HKEY_LOCAL_MACHINE
Key: System\CurrentControlSet\Services\MSExchangeIS\ParametersSystem
Name: TCP/IP port
Type: REG_DWORD
Value: decimal value greater than 1024