OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Problems with backscaters and require authentication

anebiiguanait.com
Date: Tue Dec 02 2008 - 06:50:10 CST


Hi,

i have some problems with spammers and i would like to ask how to set
postfix to validate sender email addresses only for our domains. Is
there some way to do this?

Other thing that i want to ask. I have this problem:

i connect thru telnet to the smtp server and send email this way:

helo myhostname.example.com
mail from:realusermydomain.com
rcpt to:realusermydomain.com
data
something here
.
quit

mydomain.com is domain from the system.

i'm able to send spam to this user, using the same email address in
"mail from" field.

Is there some way to protect my mailserver from this kind of things for
our domains. If "mail from" use our domains (for example
usernamemydomain.com), then to require authentication.

In any case we use sasl and we require sasl authentication, but i see
this problem.

How to solve this?