Seven Tips for Securing Your Organization's Network from Spam and Email Viruses

By: Todd Green
Submitted: 2007-01-17 14:34:01
Print this article | Tell a friend | For publisher | Social Bookmarking
Rating:
 

Providing security against email related threats has become a burden for most IT professionals in 2006. According to a recent study by Postini, spam and email viruses now make up to 80% of all emails sent out as compared to 50% in 2000. As a result, IT professionals now face a tougher challenge in providing network security for this amount of spam. IT professionals also have the disadvantage of defending against new forms of email threats such as spam zombies, directory harvest attacks, mass mailing trojans, as well as the latest email virus.

In this article, I have listed the seven most effective spam fighting tips for organizations with in-house mail servers. These seven tips are proven techniques I have used for my customers, partners and associates who wish to tighten their perimeter (network) security.

1. Firewall:

A firewall is your first line of defense against hackers, crackers, and spammers. Without a firewall, your network is a disaster waiting to happen and could give any novice hacker free reign over your network. If your organization has multiple Internet users, this tool is essential for securing your network.

2. Block Port 25:

On your firewall, allow outbound traffic on TCP port 25 for all mail servers. Block traffic on outbound TCP port 25 for all other computers and servers. On the Internet, TCP port 25 is used for email traffic through SMTP (Simple Mail Transport Protocol). Blocking this port is a good security practice and prevents mass mailing worms and spam zombies from sending mail from your users’ computers.

3. Managed Email Filtering:

Consider using a managed filtering solution such as Postini, Brightmail, or SpamSoap. Managed Email Filtering services quarantine spam, viruses, and email threats before reaching the email servers on your network. In comparison to desktop filters and server appliances, managed filtering services provide superior perimeter (network) protection by preventing delivery of spam and viruses to your network and servers.

4. Check Relay Setting:

A mail server’s relay setting controls which computers and servers are able to send SMTP email on your organization’s behalf. Check your settings and limit the IP address range to email users on your local network. Some mail servers have settings to limit email relay through authentication. If authentication-based relay is available, setup and configure it too. NOTE: If the relay is not set properly, spammers will be able to send email from your mail server. This exploit is commonly known as an “Open Relay” or a “Spam Relay.” Use the Open Relay test at http://www.abuse.net/relay.htm to check if spammers can relay mail from your server.

5. Black Lists:

Setup your mail server(s) with a black list. A black list (black hole list) is a database or listing of known spam sources. Most modern email servers can be configured to query inbound email against online blacklists. Messages originating from these sources can then be blocked. I recommend configuring your email server with SpamHaus blacklist. Spamhaus.org is an excellent free service to use. Some other good blacklists are DBSL and SpamCop.

6. Reverse DNS:

Reverse DNS (rDNS) associates an IP Address with a Domain Name. Most mail servers, as an anti-spam feature, often use a reverse DNS lookup to compare an email address domain name with its IP address. If the IP address found from the rDNS lookup does not match the domain name, it is probably spam. If you haven’t done so, setup and configure reverse DNS records on your DNS server.

7. Anti-Virus Scan:

There are many tools that provide adequate anti-virus protection for desktops at the workplace. Most anti-virus software is good at detecting viral threats that proliferate email spam such as mass mailing worms, trojans, and directory harvesters. Large organizations might want to use enterprise anti-spam software with management and monitoring tools that will allow tracking of network virus outbreaks.

Recommended Links:

- http://www.spam-x.com [Postini service – managed filtering, 1 to 500 users]

- http://www.postini.com [Postini service – managed filtering, 500+ users]

- http://www.spamhaus.org [Blacklist]

- http://www.dbsl.org [Blacklist]

- http://www.spamcop.net [Blacklist]

- http://www.abuse.net/relay.htm [Open relay test]

- http://www.dnsreport.com [DNS report/open relay test]

- http://www.dnsstuff.com [Spam database lookup and open relay test]

- http://www.cnn.com/2004/TECH/ptech/02/17/spam.zombies.ap [Spam Zombie Article]

Email viruses and related threats delivered through spam have cost businesses billions of dollars in expenses and lost productivity. Each spam email sent or received from your domain costs your organization money and bandwidth. By implementing these seven tips, your organization can reduce spam and recover costs.

This article: © Copyright 2006 Todd Green and free for republishing.

About the author: Todd Green is a partner of a Memphis-based IT consulting firm. He has over fourteen years’ experience in the field of Information Technology and has managed security on many corporate networks over the years. He is the owner of SPAM-X, a Postini reseller (http://www.spam-x.com) and a partner for Postini’s preemptive spam and virus filtering service.

Article source: Expert Articles

Most Recent Articles in Spam Blocker category

  • Stay Close To Your Clients: A Marketing Strategy - By: Lynne Saarte
    powerful information that you can use in your marketing campaigns
  • How To Protect Your PC Against Spam - By: Wayne Davis
    An increasingly common problem since the inception of email, Span is a concern for many users. No one wants to deal with spam, and almost every user is tired of fighting it, but while there are thousands of programs claiming to offer spam guard devices, you may need additional ways to deal with this persistent problem.
  • Anti Spam - By: David Done
    Anti Spam - Spam Soap provides hosted email security solutions including Inbound & Outbound Filtering, Disaster Recovery & Message Continuity, and Compliant Message Archiving.
  • Spam Blocker - By: David Done
    Spam Blocker - Spam Soap provides hosted email security solutions including Inbound & Outbound Filtering, Disaster Recovery & Message Continuity, and Compliant Message Archiving.
  • 20 Words That Kill - At Least When It Comes to Spam Filters - By: Alexandria K. Brown
    Spam, spam, spam. It's terrible not only for those of us on the receiving end, but for those of us who SEND e-mail. This deluge of irritating junk has unfortunately interfered with legitimate e-zine publishers, because we're caught in the anti-spam crossfire.
  • Lockspam Free 3.0 Released! - By: Sophie Ao
    6 August, 2004: Polesoft Inc., home of Professional anti spam software, announced today that Lockspam Free 3.0 (see also Lockspam Pro 3.
  • Phishing for an Identity - By: Steven M. Carlson
    Phishing is rapidly becoming on the largest threats to your personal, financial, and emotional wellbeing. No I am not talking about Saturday afternoons out on the boat with your grandfather, listening to stories that being with “When I was your age…”—now while these probably conjure up horrific childhood memories of such stores, they in no way come close to the horror felt by victims of Phishing.Phishing (fish’ing – to trick people into providing their personal and financial information by pretending to be from a legitimate company, agency or organization) is a fairly new scam propagating itself on the internet in many different forms.
  • The Great Spam Scam: Five Strategies To Stop Brand and Revenue Robbery - By: Meryl K. Evans
    Marketers usually think of anti-spam tactics as 'how to prevent' readers from perceiving their e-communications as spam. There is another, more sinister, consequence that may affect you. Spam is not just an inconvenience.
  • Getting Back To Basics. - By: Anna-Marie Stewart
    While we all agree that there`s way too much spamming/junk-mailing going on in our email boxes, there are a couple of things we can do to reduce the amount of mails we actually have to sift through, without having to resort to paying for expensive software that can be a real pain to set up properly. Firstly, and this is a great, little known tip. You can get yourself a free email account, (the bigger the better) which is a great thing to have if you use a lot of FFA`s, Classified sites, Search Engine Submittals etc.
  • Winning the War On Spam - By: Michael Southon
    For years I didn't worry much about spam.But lately it's got out of control. Over half of my email is now spam, and it was growing by the week - until I took action.