[Raw Msg Headers][Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

relay possible, what can I do?




The rlytest at
http://maps.vix.com/tsi/ar-test.html
says, that our mailserver is vulnerable, what can I do?


____________________________________________________________
Initiating Third-Party Mail Relay Test ...

Target Host = mail.uni-paderborn.de

------------------------------------------------------------
Looking up mail.uni-paderborn.de ...
Launching rlytest ...
Connecting to 131.234.22.30 ...
<<< 220 uni-paderborn.de ZMailer Server 2.99.49p9 #1 ESMTP+IDENT ready
at Wed, 30 Sep 1998 17:30:11 +0200
>>> HELO isrv1.pa.vix.com
<<< 250 uni-paderborn.de expected "HELO isrv1-i.pa.vix.com"
>>> MAIL FROM:<nobody@mail.uni-paderborn.de>
<<< 250 2.1.0 Sender syntax Ok
>>> RCPT TO:<nobody@isrv1.pa.vix.com>
<<< 250 2.1.5 Recipient address syntax Ok
>>> DATA
<<< 354 Start mail input; end with <CRLF>.<CRLF>
>>> (message body)
<<< 250 2.6.0 S.q2Yu321491 message accepted
>>> QUIT
<<< 221 2.0.0 uni-paderborn.de Out
rlytest: relay accepted - final response code 221

------------------------------------------------------------

This is from our smtp-policy.src:

.                       relaycustomer - senderokwithdns + message "We do
                        not rely for you!" acceptifmx - test-dns-rbl +

[0.0.0.0]/0             relaycustomer - senderokwithdns + acceptifmx -
                        test-dns-rbl +


We are using ZMailer Server 2.99.49p9

thanks for any hint!
   
bye
   Martin


Test complete.

PROBLEM!  Host mail.uni-paderborn.de may be vulnerable to mail relay.
-- 
bye  
   Martin

Core dumping fscks tend to make me nervous  (Linus Torwald)
------------------------------------------------------------------
private: 
http://www.uni-paderborn.de/Admin/marting.html                     
work:    
http://www.uni-paderborn.de/gurus/postmaster.html                  
Key fingerprint = 00 ED 8C 80 AB 39 32 D7  75 D8 71 BE 33 05 AA 79