Before you install an ensemble of mail servers, you should determine what role you will assign to the message transfer agent for each of them. Two factors can help determine the role of an MTA:
1. | The MTA's ability to route messages to a group of e-mail users in one of the following ways: |
![]() |
The MTA delivers mail directly to local recipients. | |
![]() |
The MTA forwards the messages to the recipient's appropriate mail server for non local recipients. |
2. | The relative position of the mail server to the company's firewall: |
The SIMS product classifies the MTA's ability to route messages in the following three ways:
If your company has not implemented a firewall around your mail network, the mail server queries the local or a public Internet domain name server before it forwards a message. However, if your mail server is located behind a firewall system, all messages to mail users outside your company's private mail network have to travel through the firewall's MTA. Since your MTA is not a firewall MTA, it also cannot query the public DNS.This means that each mail server's MTA depends on a smarter MTA (except the firewall machine's MTA) that resides on the firewall machine or a smart host, to forward all messages that it cannot route directly. The smart host may or may not serve as the firewall system. If you have two separate machines, one serving as the smart host and the other serving as the firewall system, the MTA can forward a message to a recipient in another subdomain to the smart host, and mail addressed to a recipient outside your organization to the firewall machine.
For example, your company, Alpha Corporation, has implemented a firewall. If a user, joan@eng.alpha.com sends a message to pierre@sales.alpha.com, the message is handled by Joan's mail server. Since Joan's mail server can route only to users within eng.alpha.com domain, it forwards the message to its configured smart host, mailhost.alpha.com. If mailhost.alpha.com has the ability to route messages to alpha.com, this mail will be routed directly to Pierre's mail server. However, if mailhost.alpha.com serves as a pure backbone MTA, with no ability to route messages directly to users, it will transit the message to a configured MTA (specified in the mailhost.alpha.com 's configuration) that can route directly within Pierre's mail domain, sales.alpha.com.
In this example, mailhost.alpha.com does not necessarily serve as the company's firewall system. So, if a message arrives addressed to youri@net.com, mailhost.alpha.com will forward this message to the firewall machine. The firewall machine will then route the message across the public Internet to the net.com domain.
For information on how to configure an MTA's location relative to a firewall and how to configure a smart host, see Section "To Configure Position Versus Firewall and Smart Host," in the Sun Internet Mail Server 3.5 Administrator's Guide.