SBS 2003 open relay...

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: StuartM (superstu75_at_liamtoh.com)
Date: 02/10/04


Date: Tue, 10 Feb 2004 23:11:15 +1300

I have done several Exchange 2003 installations and have now also done
two SBS 2003 installations. I am confused as to why the default Exchange
settings in SBS allow the server to be an open relay, while the Exchange
2003 (stand-alone product) settings do not??? The following article in
the MS KB describes how to clear up your mail queues after experiencing
the effects of your server open relaying:
http://support.microsoft.com/default.aspx?scid=kb;EN-US;324958 but the
fix is to set your server back to the defaults - which were actually the
cause of the open relay in the first place!!

The settings in question are in the properties of the Default SMTP
Virtual Server, on the Access tab and then the Relay button. The default
settings in SBS 2003 have two IP addresses listed in the "Only the list
below..." dialog box - the localhost address and the IP address/es of
the network card/s. THIS SETTING ALLOWS OPEN RELAYS!!!

I can't understand how Microsoft missed this in their testing? I also
can't understand how Microsoft think that this should be the default in
SBS whereas the stand-alone Exchange 2003 has NO addresses listed as
being able to relay.

Hopefully somebody will enlighten me...

Stuart.


Quantcast