OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Jussi Silvennoinen (jussi_postfix_at_silvennoinen.net)
Date: Tue Aug 06 2002 - 05:51:50 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Tue, 6 Aug 2002, Rķkharšur Egilsson wrote:

    > This was also a topic last month, maybe someone has gotten new ideas ..
    >
    > The problem is this : Anybody in the world can connect to our mail
    > gateway and send a mail that appears to come from mydomain.org
    >
    > We are already getting quite a few spams like this and since some of them
    > appear to come from high level managers advertising embarresing
    > products they are fuming to have this hole closed..
    >
    > It complicates the matter that smtpd_sender_restrictions almost never
    > works since it's only in the header that the mail says BigBossmydomain

    Consider using the snapshots in which you can define different
    cleanup-daemons for different smtpd's.

    Put up two hostnames running on different IP's on your mailserver
    and configure MX-records accordingly in your DNS.

    In MX-smtpd/cleanup, use header-checks which eliminate mail appearing to
    come from your domain.

    Be sure NOT to include your networks in MX-smtpd's $mynetworks to make
    sure that people are using the correct mail-hostname.

    -- 
    

    Jussi

    - To unsubscribe, send mail to majordomopostfix.org with content (not subject): unsubscribe postfix-users