Posted By: David Tesar | Oct 27th, 2009 @ 6:02 PM | 21,349 Views | 2 Comments

Alexander Nikolayev, program manager for FPE, walks us through how all of the anti-spam features work, including the new functionality with FPE over the previous version.  After a couple minutes we dive right into the whiteboard walking through the mail flow anti-spam features with connection, protocol, and content filtering.

Since this is a longer interview, here’s how it breaks down.  Markers are the round circles in the Silverlight player progress bar.

[5:20 / Marker 1] - How the DNS Block list (DNSBL) feature works, exceptions of when it doesn’t apply, how you know a message was blocked by DNSBL,  areas where our DNSBL is better than competitors’ solutions.

[13:47 / Marker 2] – How SMTP filtering works

[19:00 / Marker 3] – How Sender ID filtering works

[21:32 / Marker 4] –  Cloudmark engine (content filtering) and performance results with MSIT, frequency of updates with engine, how it is different than competitors’ solutions.

[27:04 / Marker 5] – Estimated Percentage of Spam which is blocked at what spot in the Anti-spam mail flow process based on MSIT deployment of FPE (not including FOPE)

[29:05 / Marker 6] – What is Backscatter and how does it work

[36:40 / Marker 7] – Final tips on backscatter, content filtering, DNSBL, SMTP and sender ID, SPAM and BACON.

Watch a video on the differences between FPE and Forefront Online Protection for Exchange (FOPE).

Visit the Forefront Protection 2010 for Exchange homepage

Rating:
2
0

This is one of the best Edge presentations I have seen to date. The presenter clearly knows what he is talking about and has great command of the language to distill technical concepts into understandable terms for less- or non-technical audience. This kind of presentations usually sells the product to the toughest crowd--technical decision makers, who are typically skeptical of the marketing drivel. Awesome job, Sasha!

Great presentation Alexander. You mentioned that Forefront DNSBL is a simple yet effective filtering technology. My experience has been different as reflected in the NDR below that EVERY sender receives once I enable Forefront DNSBL. When disabled external email comes in fine [with less spam but no Outlook Junk Mail functionality for some reason?]. Any comments would be appreciated as no one yet has been able to give me any clues as to why this is happening. You seem smarter than those people however Wink

 

This Message was undeliverable due to the following reason:

Each of the following recipients was rejected by a remote mail server.
The reasons given by the server are included to help you determine why
each recipient was rejected.

    Recipient: <someone@somewhere.com>
    Reason:    5.7.1 :208.69.36.132:Client host 71.74.56.122 UnknownDNSName;
Mail from IP banned. To request removal from this list please forward this
message to delist.forefront@messaging.microsoft.com

Microsoft Communities