Re: Open Relays
- From: "Kevin Longley" <kwlongley@xxxxxxxxxxxxxx>
- Date: Tue, 2 Jan 2007 16:23:36 -0500
This url may help
http://support.microsoft.com/kb/895853/en-us
"news.zen.co.uk" <test@xxxxxxxx> wrote in message
news:4599170a$0$32020$fa0fcedb@xxxxxxxxxxxxxxxxx
Hi All
Recently one of my clients has been blacklisted via
http://www.spamhaus.org/ and I am currently trying to ascertain the cause
of the problem.
I have ensured that all clients have the latest AV definitions and have
performed a full system scan on all machines including the Exchange server
and everything is "clean". I have also ran various spywhere detection
utilities and again everything is "clean".
My next step was to test for open relays. On the majority of the websites
which test for open relays the result was that the Exchange server was not
configured as an open relay (which I expected). However on several of the
sites it claimed that the machine was an open relay. Please find below
the result of the test (I have removed the real IP address)
Relay test 1
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
<<< 550 5.7.1 Unable to relay for relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxxRCPT TO: <relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
Relay test 2
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
<<< 550 5.7.1 Unable to relay for relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxxRCPT TO: relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx
Relay test 3
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest>
<<< 550 5.7.1 Unable to relay for relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxxRCPT TO: <relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
Relay test 4
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 <>....Sender OKMAIL FROM: <>
<<< 550 5.7.1 Unable to relay for relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxxRCPT TO: <relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
Relay test 5
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxx>
<<< 550 5.7.1 Unable to relay for relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxxRCPT TO: <relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
Relay test 6
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@[xx.xxx.xx.xxx]....Sender OKMAIL FROM: <spamtest@[xx.xxx.xx.xxx]>
<<< 550 5.7.1 Unable to relay for relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxxRCPT TO: <relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx>
Relay test 7
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxx>
<<< 550 5.7.1 Unable to relay forRCPT TO:
<relaytest%antispam-ufrj.pads.ufrj.br@xxxxxxxxxxxxxxxxxxxxxxxxx>
relaytest%antispam-ufrj.pads.ufrj.br@xxxxxxxxxxxxxxxxxxxxxxxxxxx
Relay test 8
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxx>
<<< 550 5.7.1 Unable to relay forRCPT TO: <relaytest%antispam-ufrj.pads.ufrj.br@[80.177.41.226]>
relaytest%antispam-ufrj.pads.ufrj.br@[80.177.41.226]
Relay test 9
<<< 250 2.0.0 ResettingRSET
<<< 250 2.1.0 spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx OKMAIL FROM: <spamtest@xxxxxxxxxxxxxxxxxxxxxxxxxxx>
<<< 250 2.1.5 "relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx"@saturnvisuals.comRCPT TO: <"relaytest@xxxxxxxxxxxxxxxxxxxxxxxxxx">
As you can see all of the tests failed except test 9. I would be grateful
if you could please confirm if this is normal or is the server acting as
an open relay.
TIA
Craig
.
- References:
- Open Relays
- From: news.zen.co.uk
- Open Relays
- Prev by Date: Programmatically update Free/Busy Information via CDO or MAPI?
- Next by Date: Exchange Routing Engine will not start (sp2 update)
- Previous by thread: Re: Open Relays
- Next by thread: MX Records in DNS
- Index(es):
Relevant Pages
|