Re: Securing SMTP Relay

Tech-Archive recommends: Fix windows errors by optimizing your registry





Some emails will be discarded internally, a serious relay test site will
tell you this.

Try this site, you'll have to signup to get a proper report from it:
http://www.abuse.net/relay.html

To signup you send an email to new@xxxxxxxxx and reply to it, then enter the
password on the form above.

KL.


"Ben Blackmore" <BenBlackmore@xxxxxxxxxxxxxxxxxxxxxxxxx> skrev i meddelandet
news:C189390A-7552-4029-9448-3FBB5E3B4E91@xxxxxxxxxxxxxxxx
"PeterD" wrote:

Before panic mode, were the emails in question actually sent, or did
SMTP just 'accept' them? The reason is that MSFT SMTP does accept some
emails that should be considered as 'bad relay' but then later just
deletes them without actually relaying them.


Hi Peter,

Thanks for the reply.

I'm not sure if they were actually sent or not, I'm using the relay check
found on http://www.rbl.jp/svcheck.php and the only output it shows is
that
in the original post, which doesn't include whether they were sent or not.
I
would 'guess' not as the email addresses wouldn't be seen as correctly
formated containing % or ! instead of an @.
I'm just double checking that the relay is secure, we have a lot of mails
in
our badmail folder, that have been returned by other mail servers to non
existant users on our domain, when you open the mails the original from
address is something like uvwxyz@xxxxxxxxxxxxx, I know these are probably
just emails with spoofed from addresses being returned, but I wanted to
double check someone hadn't found an exploit in our relay!
I've used http://www.zoneedit.com/smtp.html which was suggested by Thomas
Shinder's article
(http://www.isaserver.org/articles/smtprelayinboundoutbound.html) which is
what I used to secure the relay. Also checked against
http://www.aupads.org/test-relay.html and a few othersall say it's secure.
Only http://www.rbl.jp/svcheck.php reported that 3 tests were accepted.

Ben


.



Relevant Pages

  • Re: Spam Problem
    ... I have checked the queues and I can see a handful of bogus emails - ... I have checked the relay settings, only the internal IP is listed in the ... submitting these emails to the queue - SMTP doesn't appear to show this? ... I can also scan all workstations from one ...
    (microsoft.public.windows.server.sbs)
  • Re: Suddenly Emails Bouncing
    ... It appears that Comcast has pissed off MSN. ... emails from Comcast's SMTP servers. ... I relay all my server's mail through Comcast's servers just to avoid ...
    (comp.os.linux.misc)
  • Re: Lot of QUEUE in SMTP
    ... I saw the Relay seems to be ok there. ... -Right-click Default SMTP Virtual Server, ... > removing the anonymous authentication is a bad thing since people on ... >>recieve all the emails in hap hazard manner. ...
    (microsoft.public.exchange2000.general)
  • Re: Mail filtering with Exchange
    ... Neither Exchange nor any other email system I am aware of allows relay ... > I have a client who is running Small Business Server 2000, using Exchange ... > the emails, so it appears to come from user@my-company.com.au. ...
    (microsoft.public.backoffice.smallbiz2000)