Why?
Every machine that can be hit from the Internet must be considered “sacrificial”
A small(ish) machine that only forwards e-mail and normally has no data, can easily be rebuilt without losing company secrets
It’s slightly more secure to force a hacker to break into two different types of mail servers