| |||||||||||||||||||||||||||||||
|
Subject: Open Relay issue Date: Mon, 31 Mar 2008 11:35:01 +0200 Message-ID: <7BD84037E3E3BE41B25CC64C89DF01160217A8A9> From: "Carlos Jimenez Barranco" <cjimenez> To: <postfix-users> *********************** Mensaje examinado por el antivirus perimetral de Impala Network Solutions ***********-*********** Good morning: We have a computer running Postfix and functioning as a Mail Gateway, relaying incoming e-mail to an internal e-mail server (Domino). A few days ago, our public IP (address used for ougoing SMTP) was blacklisted in two dsbl.org's BlackList because it was said our SMTP Gateway was an Open Relay. We are concerned for the inclusion in this BlackList, but mostly for being an Open Relay. In fact, the question to this mailing list is related to this (to be an OR). Could you help us to solve the problem of being an Open Relay? I am going to work in the RBL issue by myself. Next, we attach the explanation from the RBL because it could be helpful to solve this problem: IP: xxx.xxx.xxx.xxx Input IP: xxx.xxx.xxx.xxx Transport: smtp Message Received: 2008/03/24 01:52:01 UTC Message Sent By: je.onfray Extended Information for Transport: MAIL FROM:<nobody> RCPT TO:<"listme> Full Message: Received: from virtualsmtp.my-domain (Relay [127.0.0.1]) by relay (Postfix) with ESMTP id 03EA14B0092 for <"listme>; Mon, 24 Mar 2008 03:07:49 +0100 (CET) Received: from fw-extern (unknown [192.168.120.17])by virtualsmtp.my-domain.com (Postfix) with SMTP id D2E7F4B0024for <"listme>; Mon, 24 Mar 2008 03:07:48 +0100 (CET) Message-ID: <zOP9kCUPApGsn1Vsw5CdpjDhu6ijHOdZ> Date: Mon, 24 Mar 2008 01:50:02 +0000 To: <listme> Subject: Open Relay Test Message From: nobody X-imss-version: 2.050 X-imss-result: Passed X-imss-scanInfo: M:P L:E SM:0 X-imss-tmaseResult: TT:0 TS:0.0000 TC:00 TRN:0 TV:5.0.1023(15804.002) X-imss-scores: Clean:62.75137 C:2 M:3 S:5 R:5 X-imss-settings: Baseline:5 C:3 M:4 S:4 R:4 (0.2500 0.2500) This message is a test of your mail server to determine if it will perform relaying (re-sending) of e-mail messages for unauthorized outside parties. This capability, if enabled in your mail server, is widely considered to be serious flaw in mail server security. Your mail server is being tested for relaying capability because we have received mail from it and wish to determine its likelihood to be abused by spammers. We have tried to create a SMTP connection to send e-mails from a domain to a different one, to check if it is misconfigured, but it fails. Unlikely, when we try using RCPT TO:"address <mailto:%22address> it success and we receive the e-mail. Is it correct? Could it be a valid test to detect a bad configuration of this Postfix? How could we correct it? Tell us if you need more information. Thank you in advance, Carlos. ___________________________________________________________________________ Este mensaje se dirije exclusivamente a su destinatario y puede contener información privilegiada o confidencial de Impala Network Solutions S.L. Si no es vd. el destinatario indicado, queda notificado de que la utilización, divulgación y/o copia sin autorización está prohibida en virtud de la legislación vigente. Si ha recibido este mensaje por error, le rogamos nos lo comunique inmediatamente por esta misma via y proceda a su destrucción. This message is intended exclusively for its addressee and may contain information that is CONFIDENTIAL and protected by professional privilege. If you are not the intended recipient you are hereby notified that any dissemination, copy or disclosure of this communication is strictly prohibited by law. If this message has been received in error, please immediately notify us via e-mail and delete it. ___________________________________________________________________________
| ||||||||||||||||||||||||||||||
© 2004-2008 readlist.com