Re: NDRs for internal clients only?

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: M Callinan (mcallinan_at_dslextreme.com)
Date: 03/31/04


Date: Wed, 31 Mar 2004 11:58:57 -0800

I agree that it's desirable to send NDRs to legitimate recipients that made
an honest mistake. Unfortunately, spammers can abuse NDR messages with
Reverse NDR attacks, using your email server as an unsuspecting relay, even
though you've configured all the proper security measures on Exchange. This
can even lead to your email server being blacklisted as a result. During
the time that I have had NDRs enabled, I have also noticed lots of outbound
NDR messages sitting in the mail queue trying to be returned to
mis-addressed spam. My thought to turn off NDRs for external sources, but
leave them on for internal sources, is a compromise. It will help keep my
exchange queues empty and running efficiently, reduce the amount of NDR spam
messages on the internet, and let my internal users get notified when they
make mistakes, but at the expense of some legitimate external users not
getting notified of their honest mistakes. This is a compromise I'm willing
to make at this time.

By the way, after a little googling, I was able to figure out how to
configure exchange2k3 to do what I want. If anyone is interested, I'll post
my findings.

"Jon Ogden" <anonymous@discussions.microsoft.com> wrote in message
news:11cdd01c4173f$01c01300$a001280a@phx.gbl...
> In Exchange System Manager go to the global settings
> folder and then select properties of Message Delivery.
> There is a tab in there called Sender Filtering. There's
> a checkbox that says, "Accept Messages Without Notifiying
> Sender of Filtering." But I think that only works on
> specific senders you put in that box.
>
> However, sending an NDR to the e-mail address provided
> in a spam message generally won't do anything. The e-
> mail addresses that are used are rarely valid addresses
> but are rather spoofed or forged. So the NDR gets sent
> to the forged e-mail server and has no where to go......
>
> The other alternative is to get a spam firewall that is
> external to your exchange server and just blocks the
> messages. Barracuda Networks makes several excellent
> products (easiest product I've ever deployed on my
> network). They work absolutely phenomenally.
>
> IMHO, you want NDRs sent to people from the outside who
> try to send you a valid message yet get the name or
> address wrong.
>
> Jon
> >-----Original Message-----
> >Can Exchange 2k3 be configured to deliver NDRs for mail
> being sent out of
> >the server, but not for mail coming into the server?
> People at the office
> >find the messages useful to let them know when they
> mistype an address or
> >send an attachment that's over the size limit of the
> external receiving
> >server. At the same time, sending NDRs for incoming
> spam is not desired.
> >If not possible now, this would be a good addition for a
> future release.
> >
> >
> >.
> >



Relevant Pages

  • Re: Exchange 2007 Postmaster Mailbox Does Not Receive NDRs
    ... As soon as we uninstalled rollup 7 and rebooted the server the NDR's started ... I think Microsoft does a great job on the server products. ... its supposed to be fixing some other NDR errors.? ... Exchange 2003 and was recently migrated to Exchange 2007. ...
    (microsoft.public.exchange.setup)
  • RE: 550 Authentication turned on in your email client
    ... on 25 and can get a response, but the server is refusing mail. ... And the sender encountered NDR 550. ... it seems the configuration of exchange is correct. ... you can read the following Microsoft Knowledge Base ...
    (microsoft.public.windows.server.sbs)
  • Re: Am I an Emule Server?
    ... I have Recipient Filtering turned on (and SMTP tarpitting set ... and the NDR I got back was from Yahoo's mail server as expected. ... analysis of where our spam came from. ...
    (microsoft.public.windows.server.sbs)
  • Re: Spam mail looping
    ... > I have a Exchange 2003 Server and have a problem with SPAM ... receiving mail (or spam) addressed to an invalid ... sending an NDR - if you're getting too many of these, ...
    (microsoft.public.exchange2000.general)
  • Re: Unexplain-able Undeliverable messages being generated
    ... real piece of email or does the message body look like an NDR? ... it as spam and sends it to your Spam account. ... Run Microsoft Exchange Server Best Practices Analyzer Today ... > would get modified by the 3rd party that scans the mail for spam. ...
    (microsoft.public.exchange2000.general)