1826330 Members
3847 Online
109692 Solutions
New Discussion

Re: SMTP Relaying

 
Andrew Crowe_2
Advisor

SMTP Relaying

Hello,

I need to reconfigure my SMTP server so to enforce that all mail messages must either originate or terminate locally(on the mail host) to prevent third party relaying. This is part of a security audit and is the only thing left that i need to do but cannot work it out. Any ideas?

Any help would be greatly appreciated.
2 REPLIES 2
Balaji N
Honored Contributor

Re: SMTP Relaying

hi,
by default sendmail prevents relaying. so if it is relaying, that means u have configured it that way.
check the contents of /etc/mail/realydomains.

and here is the link for more tips.

http://www.sendmail.org/tips/relaying.html

hth
-balaji
Its Always Important To Know, What People Think Of You. Then, Of Course, You Surprise Them By Giving More.
Steven E. Protter
Exalted Contributor

Re: SMTP Relaying

It is possible to find out information about your system via sendmail.

I will list three tools that will address these and many other possible security audit problems.

Bastille, runs in X asks questiosn, does lots of good things.
https://payment.ecommerce.hp.com/cgi-bin/swdepot_parser.cgi/cgi/try.pl?productNumber=B6849AA&date=

Bastille requires perl installatoin.

https://payment.ecommerce.hp.com/cgi-bin/swdepot_parser.cgi/cgi/try.pl?productNumber=PERL&date=

security_patch_check gets you a list of needed security patches. Security Auditors love that you run it.

https://payment.ecommerce.hp.com/cgi-bin/swdepot_parser.cgi/cgi/try.pl?productNumber=B6834AA&date=

TCP Wrapper
https://payment.ecommerce.hp.com/cgi-bin/swdepot_parser.cgi/cgi/try.pl?productNumber=TCPWRAP&date=


Download, install as follows:

swinstall -s /location_of_depot \*

SEP
Steven E Protter
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com