25.06.2013 Views

Guide to the Secure Configuration and Administration of Microsoft ...

Guide to the Secure Configuration and Administration of Microsoft ...

Guide to the Secure Configuration and Administration of Microsoft ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

MSExchangeIS/Public object. It is recommended <strong>to</strong> log <strong>the</strong> following at <strong>the</strong><br />

“maximum” level:<br />

Logons<br />

Access Control<br />

Send On Behalf Of<br />

Send As<br />

Download<br />

Use <strong>the</strong> Windows NT event viewer <strong>to</strong> view logged events.<br />

Message Transfer Agent<br />

Site Level<br />

Server Level<br />

The Message Transfer Agent routes messages between Exchange servers. The<br />

Message Transfer Agent is used anytime a message has <strong>to</strong> go <strong>of</strong>f a server.<br />

The Message Transfer Agent is managed at both <strong>the</strong> site <strong>and</strong> server levels in <strong>the</strong><br />

Exchange Administra<strong>to</strong>r where, from a security perspective, two items are <strong>of</strong> interest –<br />

message tracking <strong>and</strong> diagnostic logging. Message tracking <strong>and</strong> diagnostic logging for<br />

<strong>the</strong> Message Transfer Agent are identical in concept <strong>to</strong> that <strong>of</strong> <strong>the</strong> Direc<strong>to</strong>ry S<strong>to</strong>re <strong>and</strong><br />

Information S<strong>to</strong>re.<br />

Message tracking is enabled at <strong>the</strong> site level in <strong>the</strong> Exchange Administra<strong>to</strong>r:<br />

Select <strong>the</strong> MTA Site <strong>Configuration</strong> object from within <strong>the</strong> configuration object, <strong>and</strong><br />

<strong>the</strong>n select File/Properties. Message tracking is enabled from <strong>the</strong> “General Tab.”<br />

Message transfer agent diagnostic logging levels are administered from <strong>the</strong> server level<br />

in <strong>the</strong> Exchange Administra<strong>to</strong>r:<br />

Select <strong>the</strong> Message Transfer Agent object from <strong>the</strong> appropriate server object, <strong>and</strong><br />

<strong>the</strong>n select File/Properties <strong>and</strong> <strong>the</strong> “Diagnostic Logging” tab. It is recommended <strong>to</strong><br />

log <strong>the</strong> following at <strong>the</strong> “maximum” level:<br />

Security<br />

20

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!