Security Basics mailing list archives

Re: pop3 antivirus check


From: Lukas Sosnovec <lukas76cz () seznam cz>
Date: Tue, 9 Sep 2003 10:26:59 +0200

Yes, I know it's a security problem, but I have to find a way... 
I thing I can give the users only http acces, and the web-based email could be checked by my WirusWall.

Lukas

On Mon, 8 Sep 2003 13:59:23 -0400
"Steve" <securityfocus () delahunty com> wrote:

How about telling them no since it is a security risk and note that in your
written policy to support that reply?  Although if you do tell them no you
still have a hole when users check web-based email via HTTP.  I have seen
many firms that block access to any website with the word "mail" anywhere in
the URL.

As a solution if you do want to allow POP and HTTP based email for users I
have seen good products that are border appliances checking all traffic on
HTTP, HTTPS, SMTP, POP, IMAP etc and scanning for viruses and certain
blocking attachment types, mime types.  Symantec makes one that does this as
do other vendors.


----- Original Message ----- 
From: "Lukas Sosnovec" <lukas76cz () seznam cz>
To: <security-basics () securityfocus com>
Sent: Monday, September 08, 2003 5:48 AM
Subject: pop3 antivirus check


We restrict all outgoing traffic to http only. For incomming emails we use
TrendMicro WirusWall on our SMTP server. Now some users in our LAN want to
acces pop3 servers in Internet via pop3 protocol. I'm wondering if there
exists any antivirus solution for such situation (I mean something like pop3
AV proxy)? Any expiriences?
Lukas


---------------------------------------------------------------------------
Captus Networks
Are you prepared for the next Sobig & Blaster?
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans
 - Precisely Define and Implement Network Security
 - Automatically Control P2P, IM and Spam Traffic
FIND OUT NOW -  FREE Vulnerability Assessment Toolkit
http://www.captusnetworks.com/ads/42.htm
----------------------------------------------------------------------------


---------------------------------------------------------------------------
Captus Networks 
Are you prepared for the next Sobig & Blaster? 
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans 
 - Precisely Define and Implement Network Security 
 - Automatically Control P2P, IM and Spam Traffic 
FIND OUT NOW -  FREE Vulnerability Assessment Toolkit 
http://www.captusnetworks.com/ads/42.htm
----------------------------------------------------------------------------





---------------------------------------------------------------------------
Captus Networks 
Are you prepared for the next Sobig & Blaster? 
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans 
 - Precisely Define and Implement Network Security 
 - Automatically Control P2P, IM and Spam Traffic 
FIND OUT NOW -  FREE Vulnerability Assessment Toolkit 
http://www.captusnetworks.com/ads/42.htm
----------------------------------------------------------------------------


Current thread: