<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Where should my Exchange server reside on my network?</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/itanswers/where-should-my-exchange-server-reside-on-my-network/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/itanswers/where-should-my-exchange-server-reside-on-my-network/</link>
	<description></description>
	<lastBuildDate>Wed, 19 Jun 2013 19:19:38 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: ramseyb</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/where-should-my-exchange-server-reside-on-my-network/#comment-92637</link>
		<dc:creator>ramseyb</dc:creator>
		<pubDate>Wed, 25 May 2011 20:56:40 +0000</pubDate>
		<guid isPermaLink="false">#comment-92637</guid>
		<description><![CDATA[In agreement with all them.  Behind Firewall and Gateway.]]></description>
		<content:encoded><![CDATA[<p>In agreement with all them.  Behind Firewall and Gateway.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mrdenny</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/where-should-my-exchange-server-reside-on-my-network/#comment-91813</link>
		<dc:creator>mrdenny</dc:creator>
		<pubDate>Wed, 04 May 2011 18:17:30 +0000</pubDate>
		<guid isPermaLink="false">#comment-91813</guid>
		<description><![CDATA[Exchange isn&#039;t configured like a normal server solution.  There are three sets of servers that you need to place.  Two go within your internal network, and one goes in your DNS.  The mailbox servers and the hub transport servers both go within your internal network.  The external hub transport servers go in your DNS with just a couple of firewall holes opened between them and your hub transport servers.  If you want OWA those are a bit harder as they need to be accessible from Internet but still have access to a domain controller.  Only access to port 443 (and port 80 if you want) is needed for the client access servers which host OWA.]]></description>
		<content:encoded><![CDATA[<p>Exchange isn&#8217;t configured like a normal server solution.  There are three sets of servers that you need to place.  Two go within your internal network, and one goes in your DNS.  The mailbox servers and the hub transport servers both go within your internal network.  The external hub transport servers go in your DNS with just a couple of firewall holes opened between them and your hub transport servers.  If you want OWA those are a bit harder as they need to be accessible from Internet but still have access to a domain controller.  Only access to port 443 (and port 80 if you want) is needed for the client access servers which host OWA.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gabe9527</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/where-should-my-exchange-server-reside-on-my-network/#comment-91802</link>
		<dc:creator>gabe9527</dc:creator>
		<pubDate>Wed, 04 May 2011 15:01:00 +0000</pubDate>
		<guid isPermaLink="false">#comment-91802</guid>
		<description><![CDATA[For ease of access to your users - internal to your network (with SMTP routing Gateway in the DMZ) this would be the best approach but not normally acceptable. This will no doubt come down to what can be signed off by the company.  Please remember that the ports to this server will still need to have the same restrictions in the DMZ as it would internally.... Also the same relay restrictions and access would have to be enforced. So if the exchange server can relay in the DMZ it will be able to relay in the DMZ.

Just somethng to think about.]]></description>
		<content:encoded><![CDATA[<p>For ease of access to your users &#8211; internal to your network (with SMTP routing Gateway in the DMZ) this would be the best approach but not normally acceptable. This will no doubt come down to what can be signed off by the company.  Please remember that the ports to this server will still need to have the same restrictions in the DMZ as it would internally&#8230;. Also the same relay restrictions and access would have to be enforced. So if the exchange server can relay in the DMZ it will be able to relay in the DMZ.</p>
<p>Just somethng to think about.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: yasirirfan</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/where-should-my-exchange-server-reside-on-my-network/#comment-91794</link>
		<dc:creator>yasirirfan</dc:creator>
		<pubDate>Wed, 04 May 2011 08:55:47 +0000</pubDate>
		<guid isPermaLink="false">#comment-91794</guid>
		<description><![CDATA[The best practice is to keep all your Servers which are providing internet sevices either Exchange or Web or ISA should be in DMZ zone, first and foremost they are much secured and you can open the required ports in firewall.


Cheers

Yasir]]></description>
		<content:encoded><![CDATA[<p>The best practice is to keep all your Servers which are providing internet sevices either Exchange or Web or ISA should be in DMZ zone, first and foremost they are much secured and you can open the required ports in firewall.</p>
<p>Cheers</p>
<p>Yasir</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached
Database Caching 3/10 queries in 0.037 seconds using memcached
Object Caching 309/315 objects using memcached

Served from: itknowledgeexchange.techtarget.com @ 2013-06-19 21:37:37 -->