home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers






WSS Puts Its Stamp On E-Mail Security

By Gregory Yerxa
our customizable newsletter, sends you security alerts, product updates and software patches on the products you use. Sign up now at www.networkcomputing.com /express/
 Remember the "Good Times" when the Internet had two or three computers and everybody knew your name? The Internet today feels more like a crowded bus than the comfortable atmosphere of your local pub. That's why securing incoming and outgoing e-mail needs to be a priority for your enterprise network. Control over message content, attachments and encryption can protect your information and users. Attached files may contain viruses or false information, while unsolicited commercial e-mail wastes chunks of everyone's time. Worldtalk's WorldSecure Server (WSS) 3.0 lets you control message content, encryption, virus detection and spam mail. In addition, it includes support for LDAP and S/MIME (Secure MIME), providing a near-complete e-mail firewall security solution.

Based on SMTP, WSS works with any mail server or SMTP gateway. It acts as an SMTP relay (it does not store mail, only forwards it) and handles all incoming and outgoing SMTP traffic. For most installations, you'll simply have to modify your domain MX record and make a few configuration changes on your e-mail server. When installing WSS on the same host as your mail server, you must make additional configuration changes, such as SMTP port numbers. In our University of Wisconsin Real-World Labs®, I tested a beta version of WSS and was pleasantly surprised by the security it provided via its comprehensive rule-based policies.

Secure Networking Filtering based on source and destination addresses and keywords in the subject and body text are two of WSS' more basic features. You can specify word lists and numeric thresholds to trigger other events, such as annotating, quarantining, deleting or archiving a message. In the lab, I created a rule that would tag any messages containing the words "Real World" with another message indicating a warning. Using this feature, you can increase content awareness (such as indicating the mail is from outside the company or a respected networking publication) and filter spam or mailing-list correspondence from end users. WSS enforces its policies on both user and domain levels by parsing the destination and source e-mail addresses, enabling complete domain and systemwide administration. Any policy can be enforced over an entire mail domain or a group of users. During testing, I indicated which mail domain or users were subject to each individual policy with a single click for each policy I configured.

Using its built-in LDAP support, WSS accesses public-key information and encrypts messages for end users. For further security, you can mandate that individual addresses send encrypted messages. WSS also supports peer-to-peer S/MIME encryption, so your company can securely communicate over the Internet between campus networks. However, if your users use PGP (Pretty Good Privacy) for encryption, WSS is out of the loop, since all public-key encryption on WSS is via S/MIME.

After configuring a mail server to relay information through the WSS SMTP relay, I created a test user account. With all SMTP traffic now flowing through the WSS system, all e-mail could be filtered and processed based on configurable policies. With the test mail account, I examined WSS' feature set by creating numerous policies and enforcing them on our test mail domain. Using a mail client, I sent a message containing a file attachment to the test user account. The test user received the mail message with the WSS "CLEAN STAMP" in the subject heading, indicating no viruses in the message or attachments. Had a virus been discovered, the attachment could have been stripped from the message or permitted for transmission.

WSS also is able to scan popular compression programs, including PKZIP, PKLITE, ARJ, LZEXE, LHA and MS Compress, for viruses. Most of the WSS security measures can stamp a message with additional information, and they are completely administrator-configurable.

WSS performance may become an issue for high-volume sites. Features such as virus scanning and content filtering consume large amounts of CPU time, thereby slowing network response. WSS is multiprocessor-aware and will take advantage of beefy multiprocessor machines. You can configure a peak time when WSS defers message delivery and eliminates half of the SMTP traffic. For installations with tremendous SMTP traffic and numerous mail servers, you can easily configure multiple SMTP servers and WSS systems for improved performance.

Gregory Yerxa can be reached at gyerxa@nwc.com.


Other Sneak Previews

Network Health Provides Remote Access Check-Ups
By Mike Fratto
WebSphere Takes Your Site by Storm
By Jeffrey Rubin with Ricardo Reimundez
A PIM You Can Live With
By Dave Fetters
Stampede Technologies' TurboGold for lotus notes
By Rich Neves

Company Directory
to browse our data, starting with a particular company.

Network Computing Links
allows you to request additional product information from our advertisers.

Print This Page







Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Download Today
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



InformationWeek Business Technology Network
InformationWeekInformationWeek 500InformationWeek 500 ConferenceInformationWeek AnalyticsInformationWeek CIO
InformationWeek EventsInformationWeek ReportsInformationWeek MagazinebMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingNo JitterPlug Into The Cloud
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0 ConferenceMobile Business ExpoSoftware ConferenceCSI - Computer Security Institute
Black HatGTECEnergy CampMashup CampStartup Camp
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungLight Reading's Cable Digital NewsConstantinopleInternet EvolutionPyramid Research
Heavy ReadingLight Reading Live!Light Reading InsiderEthernet ExpoOptical ExpoTeleco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems & TechnologyInsurance & TechnologyWall Street & TechnologyAccelerating Wall StreetBank Systems & Technology Executive SummitBuyside Trading SummitInsurance & Technology Executive Summit
space
Microsoft Technology Network
MSDN MagazineTechNetThe Architecture Journal
space


App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2008  United Business Media LLC  |  Privacy Statement  |  Terms of Service  |  Your California Privacy Rights