Microsoft Exchange Server 2003 Unleashed (2nd Edition)
| < Day Day Up > |
| The messaging environment is composed of much more than just the Exchange servers and client machines. Firewalls, network perimeters , accessibility options for users, security policies, and more are integral components that must be thoroughly designed as well. Establishing a Corporate Email Policy
Corporate or organizational email policies are used to govern and enforce appropriate business use of the messaging environment. They are also used to provide grounds for investigations of inappropriate use of corporate email. It is recommended to establish these policies and get the business to approve them as soon as possible.
NOTE Corporate email policies not only define how the system can and should be used; they also limit liability.
The following are possible considerations and guidelines to include in the corporate email policy:
The corporate email policy should be made available in a variety of different places on a variety of different mediums. For instance, include the corporate email policy on the intranet, in employee handbooks, and periodically in the company newsletter. The policy can also be included as users log into the messaging system using forms-based authentication. Securing Exchange Server 2003 Through Administrative Policies
Similar to the corporate email policy for users, it is recommended to establish administrative policies that govern the operation and usage of the Exchange Server 2003 messaging system. Considerations for the organization's administrative policies include the following:
Using Email Disclaimers
Email disclaimers inform recipients of corporate legal information and policies. For all practical purposes, email disclaimers are used to reduce liability and caution recipients about misusing the information contained within the message. Email disclaimers can be tacked onto the bottom of all outgoing messages automatically when sent through a particular server. The following is a sample email disclaimer: The information contained in this message is intended solely for the individual to whom it is specifically and originally addressed. This message and its contents may contain confidential or privileged information. If you are not the intended recipient, you are hereby notified that any disclosure or distribution, or taking any action in reliance on the contents of this information, is strictly prohibited.
TIP The organization's legal department or representative should approve the contents of the email disclaimer. If there were ever a situation where the information could potentially be used in a court of law, the email disclaimer will hold more relevance under scrutiny.
Exchange Server 2003 SMTP event sinks are used to add email disclaimers to all outgoing mail or outgoing mail from a specific server. Third-party products are available as well but also come with a cost. To create an email disclaimer, follow these high-level steps:
For more information on creating an SMTP event sink for an email disclaimer, refer to Knowledge Base article 317680. |
| < Day Day Up > |