Educause Security Discussion mailing list archives

Re: SMTP Outbound


From: Francisco Pérez <francisco.perez12 () UPR EDU>
Date: Thu, 13 Feb 2014 10:31:06 -0400

We also don't block but monitor & log.

-Fco

On Thu, Feb 13, 2014 at 3:29 AM, Dexter Caldwell <dexter.caldwell () furman edu
wrote:

Same here.

D/C

Ken Connelly <Ken.Connelly () UNI EDU> wrote:


We don't block, but I do monitor for this traffic to identify machines
that are likely to be compromised.  If you just block, and don't log,
how do you know when you have a machine in need of remediation?

- ken

On 2/12/14, 4:34 PM, Robert Henry wrote:
This is a simple, non-scientific poll, please respond off-list and I
will share the results with the list.

Do you block SMTP traffic, port 25, outbound at your border firewall?

Thanks!
--Bob

--
Robert Henry, CISSP
Chief Information Security Officer
Santa Clara University
rhenry () scu edu <mailto:rhenry () scu edu>
408-554-5554
http://www.scu.edu/is/secure



--
- Ken
=================================================================
Ken Connelly             Associate Director, Security and Systems
ITS Network Services                  University of Northern Iowa
email: Ken.Connelly () uni edu   p: (319) 273-5850 f: (319) 273-7373




-- 
Francisco Pérez
IT Supervisor & Security Officer
UPR-Medical Sciences Campus
787-758-2525 ext. 2934
francisco.perez12 () upr edu

Please forward all suspicious information request to
correosospechoso.rcm () upr edu.

Confidentiality Notice: Any use, review, distribution or copying of this
communication by anyone other than the named recipient(s) is strictly
prohibited. Please notify the sender immediately by e-mail if you have
received this e-mail by error and delete this e-mail from your system.

Please print this email only when necessary.

Current thread: