Why do i need an EDGE server?

Skip Hofmann 341 Reputation points
2022-04-20T16:32:56.217+00:00

Hello

We are in hybrid configuration with Exchange online. All mailboxes have been migrated to exchange online, however we still create mailboxes onprem and migrate them to the cloud. We currently use ironports for all mail hygiene. Our security team will not allow direct internet connection to any internal server, and this is why we have an EDGE server. I dont really agree with this thought process. I am trying to understand what the security concerns\issues with allowing smtp port 25 access only from the exchange online servers to the back end exchange servers ? Is it best practice to also deploy an EDGE server in the dmz? if so why?

Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,331 questions
{count} votes

1 answer

Sort by: Most helpful
  1. KyleXu-MSFT 26,206 Reputation points
    2022-04-21T02:28:16.497+00:00

    @Skip Hofmann

    In a hybrid environment, it is suggested to use Edge for Exchange online, because:
    194869-qa-kyle-10-26-22.png

    About detailed information about Edge server function in hybrid, you could have a look about this article: Edge Transport servers with hybrid deployments

    As you said there doesn't exist mailbox on Exchange on-premises, so you could point MX record to Exchange online and disable centralized mail transport. In this way, mail flow will not be through Exchange on-premises, you will not need to deploy Edge server.

    Whether we need to deploy Edge is decided by whether you need to send emails through Exchange on-premises. Transport routing in Exchange hybrid deployments


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


    0 comments No comments