This topic assumes that only one Edge Transport server has been configured in your organization. Or, if you are running more than one Edge Transport server, these servers are running in parallel.
You may not have to perform this procedure if the following conditions are true:
-
There is more than one Edge Transport server in your organization.
-
These servers are configured in multiple layers between the Internet and your internal network.
In that case, you can configure the Edge Transport servers that are running in the outer perimeter network to use transport rules to block unwanted messages. The Content Filter agent will then stamp SCL values on messages. You can then configure transport rules that run on the Edge Transport servers in the inner perimeter network to check for the SCL value on messages.
If you use this procedure to configure the Content Filter agent with a higher priority value than the Edge Rule agent, the Edge Transport server may incur additional processing costs because all the messages that are received by the Edge Transport server will be evaluated by the Content Filter agent. This is true even if the message is later rejected by a transport rule that is configured on the Edge Rule agent. Also, you will no longer be able to configure a transport rule on the Edge Transport server to stamp a message that has an SCL value of -1. This value indicates to the Content Filter agent that the message should not be evaluated.
To perform the following procedures on a computer that has the Edge Transport server role installed, you must log on by using an account that is a member of the local Administrators group on that computer.
For more information about permissions, delegating roles, and the rights that are required to administer Exchange 2007, see Permission Considerations.