OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Allow all types of Relay for a Hotspot Provider..

From: Wietse Venema (wietseporcupine.org)
Date: Tue May 13 2008 - 14:04:01 CDT


mouss:
> Mark Goodge wrote:
> >
> > Because among the users sending mail via his wireless network will be
> > those with infected computers, or worse. Since he has no ability to do
> > anything about this after the event (since any customer with a
> > spamming PC will have left the hotel by the time the complaints start
> > coming in), the only way he can both protect himself and act as a
> > responsible netizen is to proxy port 25 and filter outbound traffic to
> > ensure that none of it is spam/viruses/etc.
>
> redirecting traffic without the authorization of the user has a name:
> hijacking.

Enough on this thread.

If hotspot operators want to block viruses in outbound mail, then
they should be using a transparent proxy.

An MTA is not supposed to store the IP address that the client
wanted to connect to, and to replay the login information that the
user wanted to send. There are too many things that can go wrong.

        Wietse