Chapter 5. Defining Policies and Security Procedures

Defining Policies and Security Procedures

The main subjects in this chapter are as follows:

  • Designing a solution to address regulatory and legal requirements

  • Designing procedures for message content filtering

  • Designing secure messaging

Designing a Solution to Address Regulatory and Legal Requirements

Email is a means of communication that is very easy to use. It's also very easy to abuse, by exchanging business and private information that ought to be kept confidential. It is therefore very important that you as an Exchange administrator can control the message flow inside your organization, and the message flow between your Exchange organization and the outbound messaging environments to prevent confidential information from being exposed. In this part of the chapter, we will first look at the various legal and company requirements that might encourage you to set up email policies, and we will then look at the policies that are available in Exchange Server 2007.

Legal-Compliance Requirements

Every country has its own legal system. In this chapter we will not be able to cover all legal-compliance requirements that exist in every country in the world, but we will cover the most commonly encountered laws and regulations.

United States

The United States has several laws and regulations that specify compliance requirements. This part of the chapter gives an overview of the most important ...

Get MCITP: Microsoft® Exchange Server 2007 Messaging Design and Deployment: Study Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.