locked
Exchange 2016 Edge Server Security Design RRS feed

  • Question

  • Hello, for our Exchange 2016 upgrade we are planning to put Exchange 2016 Edge servers on the DMZ.  Question:  Is it security best practices to have an appliance sit in front of the Edge servers?  If so, what would that be?  Thanks!  
    Wednesday, May 24, 2017 9:12 PM

All replies

  • It is not necessary but it will be a good idea because if you have an appliance ie. F5, Kemp, NetScaler etc then you can use the appliance to load balance the traffic for internal and external mail. Also, this will allow you to use a single alias i.e. ExternaMail instead of having 2 alias to remember.  


    • Edited by Michael Vi Wednesday, May 24, 2017 11:52 PM extra info
    • Proposed as answer by Niko.Cheng Thursday, May 25, 2017 8:23 AM
    Wednesday, May 24, 2017 11:51 PM
  • Hi TGIF,

    Just checking in to see if above information was helpful. Please let us know if you would like further assistance.If the issue has been resolved, please mark the helpful replies as answers, this will make answer searching in the forum easier and be beneficial to other community members as well.

    Thanks for your understanding.

    Best Regards,


    Niko Cheng
    TechNet Community Support


    Please remember to mark the replies as answers.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Thursday, June 1, 2017 9:54 AM