Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Blocking non-routable address

Status
Not open for further replies.

thawk10

IS-IT--Management
May 28, 2003
30
0
0
US
I am constantly having people getting through trying to use my email server as an open relay. See the log file I recieve on my email server.

postfix/smtp[5215]: warning: host wireless.bobbeckett.org[127.0.0.1] greeted
me with my own hostname hostname.domain.com
Nov 16 05:49:38 hostname postfix/smtp[5215]: warning: host
wireless.bobbeckett.org[127.0.0.1] replied to HELO/EHLO with my own hostname
hostname.domain.com
Nov 16 05:49:38 ooida02 postfix/smtp[5215]: C46CA1C40AF:
to=<amadeus95@wireless.bobbeckett.org>,
relay=wireless.bobbeckett.org[127.0.0.1], delay=0, status=bounced (mail for
wireless.bobbeckett.org loops back to myself)

Is there a way to block non-routable ips at the Pix firewall?
 
First make sure this line is in your PIX's config.

ip verify reverse-path interface outside


Also, your Internet router shouldn't allow these packets to come in. You could block it at your PIX too, but it would be more efficient to do it at the entry points into your network.
 
Baddos,
Is there a downside to adding this line to a PIX? What else would it stop. i have multiple VPN tunnels and FTP and Secure FTP running throough our PIX. Would this stop &quot;Spam&quot; from coming in? They don't have return address's?
flaz
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top