Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Great email virus vulnerabilty test site!

Status
Not open for further replies.

WhiteWiz

MIS
Jan 29, 2001
113
CA
the site listed will tell you which of 6 different CLASSES of viruses you are susceptable to.
the classes are:
MIME header (Nimbda)
Malformed file extention
Vbs
Clsid
ActiveX
Access exploit

remember your virus software only protects against KNOWN viruses so if a Nimbda variant is released it could get to you before the McAfee update does.

Just so you know GroupShield won't protect against MIME header, i can't figure a way to get it to filter attachments with no extention (Malformed) You have to add CLSID filtering manually by adding this to the list of extentions to filter:
{????????????????????????????????????} (36 questions marks include the braces)


still looking for:
a way to filter out attachments with no extention
something cheap to do Mime header verification
 
I am interested in what people think that mailbox limits should be for remote users. We have a number of users that dial an ISP and then VPN into the network and access outlook this way. They syncronize their folders so they can also work offline, but it takes a really long time each time this happens. Does anyone have some guidelines about working remotely in this situation ? Maximum limits, etc ?
Anything or any information would be fantastic.

Thanks

Greg
 
Exchange supports retrieving the list of emails and marking the ones the user wants to download. This will help with the time problem.
 
Update:
upon further investigation i see that GroupShield is doing Mime filtering, i thought it wasn't because it leaves some remnants.

How to filter files with no extention; turn on file filtering and filter on these names:
?.
??.
???.
????.
etc. (make sure you go up to at least 12 ?'s)
since it doesn't support the use of * for any number of characters.

with these additions GroupShield (and microsoft updates)filter all known virus classes.
 
I Use Citrix for all my remote users that VPN into the network they might not have it local on there notbooks or worstations but it allows me to control the network but there e-mail stays clean and backed up every night.
 
Hi,

We currently are in the same situation as far as having users VPN in through the internet. We currently use Watchguards FireBox system. After much testing we decided on configuring Outlook to use .PST folders on each remote sales persons laptop and use the remote exchange connector while working in an Offline mode. That way they wouldn't get the extreme lag times when opening a message over their 56 k pipe (+3DES encryption). So all they have to do is hit F5 to send/receive or go to the tools menu. We set up the mail direction to go to the PST folders instead of the Mailbox - Username. We also disabled OFFLINE folders so no syncrhonization takes place. There are disadvantages with this method, the most obvious is that there is no backup on the Exchange server if they happen to loose there laptops. The second is that now we are trying to decide if there is any functionality that has been lost such as the calendar for scheduling appointments, etc. from the sales people to the office or any other collaboration for the future if we ever decide to go to Office XP from Office 2000. Has anyone else used the remote mail connector or Outlook in this way? If so I'd be happy to hear about the difficulties and successes you've had.

Thanks
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top