Security challenges Used by many 100,000s of customers Used by many 10,000,000s of users Processing Billions of emails a day Using Thousands of.

Slides:



Advertisements
Similar presentations
Comprehensive protection Multi-engine antivirus Continuously evolving anti-spam protection Policy enforcement Enterprise class reliability Geographically.
Advertisements

Microsoft ® Exchange Online Advanced Security Name Title Microsoft Corporation.
Exchange Online Protection & Mail Flow
Used by many 100,000s of customers Used by many 10,000,000s of users Processing Billions of s a day Using Thousands of servers Across dozens of.
On-premises Exchange Online Protection Office 365 Directory Sync ADFS (optional) Single sign on Secure mail flow Existing environment.
Module 6 Implementing Messaging Security. Module Overview Deploying Edge Transport Servers Deploying an Antivirus Solution Configuring an Anti-Spam Solution.
Curtis Parker | December 2010 | Microsoft Corporation.
Security and Organizational Governance Anand Lakshminarayanan Senior Product Manager Microsoft Corporation.
Unified. Simplified. Unified Communications Launch 2007.
 Malicious or unsolicited mail sent to a mailbox without the option to unsubscribe  Often used as a catch-all of any undesired or questionable mail.
Microsoft Ignite /16/2017 1:30 PM
Connector- Based Customer Delivery Pool Mailbox (On-premises) Mailbox or Application (On-premises) Higher Risk High Risk Delivery Pool Resolve.
Forefront Online Protection for Exchange Renato Francesco Giorgini Evangelist IT Pro
Fact check True or False: Over half of the messages received today in Exchange Online are spam True. About 67 % of all messages are spam True or False:
What’s New in WatchGuard XCS 10.0 Update 3 WatchGuard Training.
Understanding Microsoft Forefront Online Protection for Exchange Robert Gillies Solution Architect Microsoft Corporation EXL201.
Version 2.0 for Office 365. Day 1 Administering Office 365 Day 2 Administering Exchange Online Office 365 Overview & InfrastructureLync Online Administration.
Office 365 SMTP Relay June Relay Method Send to rcpts in domain Relay to Internet via O365 Configuration Requirements Requires Authentication.
SIM334. Internet Comprehensive Protection Multi-Engine Antivirus and Multi layered continuously evolving Anti-spam In the Leader’s quadrant in the.
Protect communications Multi-engine anti-malware and enhanced spam filtering to help protect your environment from threats Enforce policy Flexible.
What’s New in Exchange Online. Disclaimer This presentation contains preliminary information that may be changed substantially prior to final commercial.
Belnet Antispam Pro A practical example Belnet – Aris Adamantiadis BNC – 24 November 2011.
Service Life CycleScenarioEXOLYOSPOOffice365 (suite wide) BuyProvisioning Licenses Storage ConsumeDevice – Software Device – Connections User.
Forefront Security Exchange. Problem Meddelande system och sammarbetsprodukter är underbarar mål för elak kod och “distrubition” av äkta dynga… Viruses.
Message Trace Office 365 May 2013.
Norman SecureTide Powerful cloud solution to stop spam and threats before it reaches your network.
SIM331 High-accuracy spam filtering Multiple virus-scanning engines Hub Transport Mailbox External About 90% of is junk Tuned for enterprise.
1 SMTP Transport Configuration SMTP Configurations and Virtual Servers Customizing the SMTP Service.
Clinton Ho Program Manager Microsoft Corporation SESSION CODE: SIA311.
Copyright© Microsoft Corporation Speaker:Engagement consultant Title of presentation:Assessment of the Environment Length of presentation: 45 minutes Audience:Customer.
Overview Presentation Robert Gorbahn Emerging Server Sales Manager München – Frankfurt/Berlin/Munich - May 2006.
CensorNet Ltd An introduction to CensorNet Mailsafe Presented by: XXXXXXXX Product Manager Tel: XXXXXXXXXXXXX.
SIM309. Connection Analysis (IP-based edge blocks) Reputation Analysis Connection Filtering Protect businesses from receiving –borne viruses.
Using Windows Firewall and Windows Defender
Module 6: Manage and Configure Messaging. Configuring Internet Mail Using Small Business Server (SBS) 2008 Console Configuring Protection Configuring.
MEC /22/2017 5:53 AM © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
Exchange Online Protection. About Speaker Prabhat Nigam Microsoft MVP: Exchange Server MCSE: Messaging 2013, MCITP 2010/2007, MS Ex – Microsoft Exchange.
Module 9 Configuring Messaging Policy and Compliance.
Module 6 Planning and Deploying Messaging Security.
Norman Protection Powerful and flexible Protection Gateway.
Alex Nikolayev Program Manager Identity and Security Division Microsoft Corporation SESSION CODE: SIA324 Cristian Mora Product Manager Identity and Security.
Module 9 Configuring Messaging Policy and Compliance.
Module 7: Managing Message Transport. Overview Introduction to Message Transport Implementing Message Transport.
“SaaS secure web and gateways frequently provide efficiency and cost advantages, and a growing number of offerings are delivering an improved.
Understanding Microsoft Forefront Online Protection for Exchange Nathan Winters Microsoft Corporation EXL201.
Copyright ©2015 WatchGuard Technologies, Inc. All Rights Reserved WatchGuard Training WatchGuard XCS What’s New in version 10.1.
Security Version 6.1 | August Need for Complete Security Stop threats at the perimeter High volume spam, phishing, viruses and.
Unified. Simplified. Unified Communications Launch 2007.
Implementing Microsoft Exchange Online with Microsoft Office 365
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter One Introduction to Exchange Server 2003.
Your Office 365 Journey Prepare, Migrate, and Operate with Barracuda
Scott Schnoll Senior Content Developer Microsoft Corporation Securing Your Exchange Deployment.
Information explosion 1.4X 44X Protect communications.
Fighting Spam in an Exchange Environment Tzahi Kolber IT Supervisor - Polycom Israel.
On-premises Exchange Online Protection Office 365 Directory Sync Secure mail flow Existing environment.
Protect communications Conditions Actions Exceptions Conditions Actions Exceptions.
Intro to the Office 365 Security & Compliance Center
ActiveSync & DLP management in Exchange Online
How to Implement Exchange Online Protection (EOP)
Exchange Online Advanced Threat Protection
Exchange security and protection
Microsoft Ignite /20/2018 8:09 AM BRK3023
9/4/2018 6:45 PM Secure your Office 365 environment with best practices recommended for political campaigns Ethan Chumley Campaign Technology Advisor Civic.
Threat Management Gateway
9/14/2018 2:22 AM THR2026 Set up secure and efficient collaboration for your organization with Office 365 Joe Davies Senior Content Developer Brenda Carter.
Demo Advanced Threat Protection
06 | Planning Exchange Online and Configuring DNS Records
Real World Advanced Threat Protection
Office 365 Security & Compliance: Exchange Online Protection
Introduction to Symantec Security Service
Presentation transcript:

Security challenges

Used by many 100,000s of customers Used by many 10,000,000s of users Processing Billions of s a day Using Thousands of servers Across dozens of Datacenters worldwide Supported by SMEs who wrote the code 24x7x365

On-premises server - Inbound and Outbound filtered through EOP Corporate Network EOP

is routed to EOP DC based on MX record resolution (Contoso-com.mail.protection.outlook.com) IP-based edge blocks Envelope blocks Virus Scanning AV Engine 1 AV Engine 2 AV Engine 3 SPAM Protection Safe Sender/Recipient Policy Enforcement Custom Rules Content scanning and Heuristics Bulk Mail filtering SPF & Sender ID Filter Quarantine International Spam Advanced SPAM management Customer Feedback False +ve / -ve Customer Feedback False +ve / -ve Spam Analysts Corporate Network

High Risk Delivery Pool High Score Outbound Pool Low Score SPAM Protection Content scanning and Heuristics Advanced SPAM management Virus Scanning AV Engine 1 AV Engine 2 AV Engine 3 Policy Enforcement Custom Rules Quarantine Spam Analysts Corporate Network

1. Connection filtering Blocks up to 80% of all spam based on IP block/allow lists. 2. Sender-Recipient Filtering Blocks up to 15% of all spam based on internal lists and sender reputation. 3. Content Filtering Blocks up to 5% of all spam based on internal lists and heuristics. 10

Connection filtering Static IP allow/block list Opt-in to Microsoft-maintained reputable sender list Content spam categories Blatant spam High confidence spam Content Filtering Actions Delete Quarantine Add X-Header Modify Subject Redirect 11

Block external threats quickly Advanced fingerprinting technologies that identify and stop new spam and phishing vectors in real time. Enable more control Mark all bulk messages as spam Block unwanted based on language or geographic origin Block based on language Block based on geography

Suspect junk mail by default goes to the Outlook junk mail folder. Uses Outlook safe senders and block lists. SPAM Quarantine is currently available to administrators only, but end-users will get access shortly. Spam Notification for the end-users

14

Delete messages Delete attachments Robust, customizable notifications Sender notifications Admin notifications

16

Same rule set as Exchange Transport Rules Includes some new conditions: The sender…IP matches any of these addresses Attachment scanning Any attachment…has executable content The message…contains sensitive information The message…size exceeds 17

Same rule set as Exchange Transport Rules Includes some new actions: Generate incident report Require TLS Encryption Put message in quarantine mailbox Use the following outbound connector… 18

Same rule set as Exchange Transport Rules Includes some new options: Rules can be configured to run for a specific time period Rules can be run in Test Mode Information Rights Management and Office 365 Message Encryption can be applied to messages using a transport rule. 19

Helps to identify monitor protect sensitive data through deep content analysis.

Extended Message trace and improved reporting Directory Based Edge Blocking Match Sub-domains Remote PowerShell for customers without hosted mailboxes  End user access to Quarantine  DKIM for inbound  Support for IPV6

No Am APAC EMEA PRC

SessionTitleTimingRoom SPR.202Encryption in ExchangeTue 10:45 AM - 12:00 PMBallroom E SPR.201 Eliminate the Regulatory Compliance NightmareTue 9:00 AM-10:15 AMMR 19ab SPR.UN.305 Exchange Online Protection: Notes from the fieldWed 10:15 AM – 11:30 AMBallroom G SPR.UN.304 Experts Unplugged: EOP & Encryption Wed 8:30-9:45 AM Wed 1:00-2:15 PM MR 18d MR 17b SPR.401 Extending Data Loss Prevention For Your BusinessWed 4:45 PM- 6:00 PMMR 18bc SPR.203 Protect your Organization with Exchange Online Protection (EOP)Mon 4:30 PM - 5:45 PMMR 18bc SPR.301 So how does Microsoft handle my spam?Tue 4:45 PM – 6:00 PMMR 19ab SPR.401Using Connectors & Mail RoutingWed 2:45 PM - 4:00 PMMR 18bc ARC.304 Exchange Server 2013 Transport ArchitectureTues 9:00 AM - 10:15 AMBallroom F EDC.302 Advanced Data Loss Prevention in ExchangeTues 1:30 PM-2:45 PMBallroom F EDC.UN.301 Experts Unplugged: Data Loss Prevention Tue 3:00 PM-4:15 PM Wed 10:15 AM-11:30 AM MR 18d MR 13ab EDC.204 Data Loss Prevention in Exchange, Outlook, OWAMon 2:45 Pm-4:00PMMR 18bc MNG.304 Reporting On O365 Mail flow and Mailbox DataWed 1:00 PM-2:15 PMMR 17a