OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: telnet port 25 obscuration

From: Chris St. Pierre (stpierreNebrWesleyan.edu)
Date: Thu Apr 05 2007 - 15:58:56 CDT


On Thu, 5 Apr 2007, Gary Casterline wrote:

> Here is a paste of what I see when I telnet from a remote host:
>
> remote host # telnet localhostname.berkeley.edu 25
> Trying xxx.xxx.xxx.xxx...
> Connected to nature.berkeley.edu.
> Escape character is '^]'.
> 220
> *********************************************************************************************************************************************************************************************************************************************************************************
> EHLO remotehost.cnr.berkeley.edu
> 502 5.5.2 Error: command not recognized
> quit
> 221 2.0.0 Bye
> Connection to localhostname.berkeley.edu closed by foreign host.

The host you are testing is behind a PIX firewall with an option
(fixup_smtp, IIRC?) that munges SMTP. You will have to get the
firewall admin to turn that option off before you can even think about
using SASL Auth, TLS, etc.

Chris St. Pierre
Unix Systems Administrator
Nebraska Wesleyan University
----------------------------
Never send mail to thobruxnebrwesleyan.edu