[ctw] Re: ForgedHELO

  • From: Tom Shaw <tshaw@xxxxxxxx>
  • To: ctw@xxxxxxxxxxxxx
  • Date: Fri, 10 Jul 2009 19:36:31 -0400

At 1:37 AM -0300 7/10/09, IBS Ltd. wrote:
Hi,.

Scratch my last message for not being able to send to the outside world... that was an LDAP issue - shutting off LDAP was the solution - I can now email out (yeah for me). hehe... sheesh... only two thousand options left to figure out!!

LOL LDAP seems to work for me under 1.5.1.3

ASSP is an excellent application... just lots of tweaking (for me anyway)...

Hey it allows you to do what you want and need to do. Once configured it is WONDERFUL. It just hums. You can set it up to send you summaries of blocked mail or if you are a hoster send each sub admin their own reports! Cool.

I am still seeing the spoofing issue - shutting off the check allowed things to pass through ok...

In order to activate the spoof check - do I have to force authentication on 587?

I'll have to check if there are alternatives but everything we do here is auth. If you have webservers etc you can whitelist by IP for example.

I am trying to get this to work without Force SMTP AUTH... I have many users I will be moving to assp - having them make a bunch of changes to their email applications, devices etc. is not the preferred method - but I am starting to think it is the only method...

I am not sure how you can easily do that when they are logging in from the outside world.

The biggest problem is that the outside world has become much more hostile than when we all started. Breaking in and cooping has become too widespread. I could probably come up with a way BUT it would be easily spoofable.

Moving to auth now is the only safe way. Look at it this way you were able to put off auth for a long time but the world changes and I am sure that your users will understand the need for security, after all it is their reputation as well.

Tom
--
Tom Shaw - Chief Engineer, OITC
<tshaw at oitc.com>, http://www.oitc.com/ local wx: http://www.oitc.com/weather
US Phone Numbers: 321-984-3714, 321-729-6258(fax), 321-258-2475(cell/voice mail,pager)
Text Paging: http://www.oitc.com/Pager/sendmessage.html
AIM/iChat: trshaw@xxxxxxx

Fish more and Live longer
Circle The Wagons
manage: //www.freelists.org/list/ctw post: mailto:ctw@xxxxxxxxxxxxx
unsubscribe: mailto:ctw-request@xxxxxxxxxxxxx?subject=unsubscribe
search: //www.freelists.org/archives/ctw
faq: //www.freelists.org/wiki/the_faq

Other related posts: