A couple of SME clients of ours want external e-mail access. I have succesfully tested Outlook Web Access via https (SSL) on our own test network which would be a viable solution for the clients. However Im fairly new to Internet security and don't have any direct experience of how secure this setup is considered to be, bearing in mind that the clients can't afford to run a DMZ machine so would be opening up port 443 directly to the Exchange Server from outside onto the internal LAN? Obviously we wouldnt allow non encrypted http connections through, and the SMTP traffic goes via the proxy but I just wondered if even allowing only https onto the LAN is a big no-no?
thanks
Chris
This thread was automatically locked due to age.