Step-by-Step Guide to Deploying Windows Mobile-based Devices with Microsoft Exchange Server 2003 sp2




Download 1.65 Mb.
bet23/147
Sana21.03.2017
Hajmi1.65 Mb.
#1016
1   ...   19   20   21   22   23   24   25   26   ...   147
Firewall Timeouts

The network idle connection timeout indicates how long a connection is permitted to live without traffic after a TCP connection is fully established.

The firewall session interval must be set to allow the heartbeat interval and Enterprise session interval to communicate freely. If the firewall closes the session, then mail would be undeliverable until the client reconnects, and the user could be unsynchronized for long periods of time. By setting the firewall session timeout equal to or greater than the idle timeout on the Operator network, the firewall will not close the session.

The following list shows how the firewalls idle connection timeouts should be set:



     Operators need to set the idle connection timeouts on outgoing firewalls to 30 minutes.

     Enterprises also need to set timeouts on their incoming firewalls to 30 minutes.



Web servers, network security appliances, and system network stacks have several time-based thresholds that are intended to insulate them from insufficiently tested or malicious clients. You can safely increase the idle connection timeout setting without compromising the security of the network.

In a direct push scenario, the connection is idle between the time that the HTTP request is made and either the time that the heartbeat interval expires or when the server responds to the request with a change (such as when mail is received). Direct push makes no assumption as to the length of its sessions; E-mail is delivered rapidly whether the heartbeat interval is one minute or thirty minutes.

Increasing the idle connection timeout typically does not increase or decrease the exposure to attack. The following table shows examples of attacks and describes how other settings are used to mitigation exposure to them.



Download 1.65 Mb.
1   ...   19   20   21   22   23   24   25   26   ...   147




Download 1.65 Mb.

Bosh sahifa
Aloqalar

    Bosh sahifa



Step-by-Step Guide to Deploying Windows Mobile-based Devices with Microsoft Exchange Server 2003 sp2

Download 1.65 Mb.