Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

open relay

Status
Not open for further replies.
Jan 10, 2003
34
NG
Hi

My sendmail 8.9.3 have a problem. When I run relay tests from outside my network, it passes the tests. But when I "telnet localhost 25" and I put
mail from: test@yahoo.com sender ok
rcpt to: test@hotmail.com recipient ok

This is a problem. I have relay domains defined as well as access.db. How could I stop this. I also see some people are kind of able to send through from outside for example this from my syslog:
May 15 15:14:25 mail.mydomain.com sendmail[1078]: [ID 801593 mail.info] PAA01078: from=<sexygirl@aaa.com>, size=0, class=0, pri=0, nrcpts=0, proto=SMTP, relay=[211.190.111.190]
and yet
May 15 15:14:26 mail.mydomain.com sendmail[1078]: [ID 801593 mail.notice] PAA01078: ruleset=check_rcpt, arg1=<saohjung66@hanmail.net>, relay=[211.190.111.190], reject=550 <saohjung66@hanmail.net>... Relaying denied

What happens. Help.
 

What does your access.db and relay-domains file look like? Post them and I'll have a look. Its probably that in your access file you have still got local host enabled as RELAY.

I'm assuming that 211.190.111.190 is your internal segment that you're relaying to?

The second one has somesort of ruleset applied to it. You have rules applied that stop mail from hanmail.net maybe?



~ Remember - Nothing is Fool Proof to a Talented Fool ~
 
The access file looks like this:
bash-2.03# more access
localhost RELAY
127.0.0.1 RELAY
xxx.yyy.ppp RELAY /*my domain ip */
mydomain.com RELAY
mydomain2.com RELAY
sdc-consult.com REJECT
209.88.92 REJECT
reports.spamcop.net REJECT
comstar.net REJECT
sexyfun.net REJECT
yahoo.com REJECT

And my relay-damains file
bash-2.03# more relay-domains
localhost RELAY
127.0.0.1 RELAY
xxx.yyy.ppp RELAY
mydomain.com RELAY
mydomain2.com RELAY

Note that the 211.190.111.190 is not part of my network at all. its someone who manged to send mail through my server.
 

If you want to stop the relaying from the local host then remove the localhost relay lines and 127.0.0.1 as these both relate to relaying from a local host.

This should solve your telnet localhost 25 problem.

~ Remember - Nothing is Fool Proof to a Talented Fool ~
 
You may also want to check that you do not have
FEATURE(`relay_entire_domain') in your sendmail.mc
Hanmail got one of my friends servers at his company and this proved to be the culprit.

There is no God, only 10001010
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top