SUMMARY: Network security problem - Open email relay

From: Paul Crittenden <crittend_at_storm.simpson.edu>
Date: Wed, 02 Feb 2000 11:50:33 -0600

Thanks to:
Jeffrey Hundstad
Mike Iglesias

They pointed me to sendmails web site for help. I looked into orbs and
ended up at abuse.com where I could test my own machine. It failed on test
6. I contacted Compaq and got some relay stopping stuff from them. On one
machine it shutdown all the relay attempts but on the original it still
fails at 13. At least I got past 6. There are 16 tests in all. Although
on the machine that is supposed to be the problem, abuse says the failure
may not actually be a hole. They said if it was I would get my mail. Well
I never did, and the machine in question appears to have dumped the mail
with a local configuration error, so I don't know if I truly have a problem
or not. I am very ignorant when it comes to sendmail, so we'll see what
happens. I told orbs I had closed the hole since the original problem no
longer exists, if it ever did, so we'll see.



I received this e-mail today. Apparently, one of my servers can be used to
relay spam even though both are secured so they individually can't relay
spam. However, since one sends its e-mail to the other then spam can be
relayed, if I understand the message. How can I stop this? I am using
sendmail 8.9.3.

>ORBS (see http://www.orbs.org/) has discovered an open SMTP relay
>at 198.206.243.x. Unfortunately, it appears that after E-mail is injected
>into this open relay, 198.206.243.x forwards the relayed message, for
>whatever reason, to your server at 198.206.243.y, which then delivers
>to its final destination.
>
>The end effect is that 198.206.243.y may be acting as a spam delivery agent,
>even though it may be secured against third party relay itself.

Paul Crittenden
Computer System Manager
Simpson College
e-mail: crittend_at_simpson.edu

Eat right. Stay fit. Die anyway.
Received on Wed Feb 02 2000 - 17:50:56 NZDT

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:40 NZDT