From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by nuthatch.gentoo.org with esmtp (Exim 4.62) (envelope-from ) id 1I3ktp-0000Q4-VT for garchives@archives.gentoo.org; Thu, 28 Jun 2007 03:42:30 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.14.0/8.14.0) with SMTP id l5S3fE4b008543; Thu, 28 Jun 2007 03:41:14 GMT Received: from uni13mr.unity.ncsu.edu (uni13mr.unity.ncsu.edu [152.1.224.171]) by robin.gentoo.org (8.14.0/8.14.0) with ESMTP id l5S3Zupp001552 for ; Thu, 28 Jun 2007 03:35:57 GMT Received: from [192.168.1.135] (cpe-071-065-216-162.nc.res.rr.com [71.65.216.162]) (authenticated bits=0) by uni13mr.unity.ncsu.edu (8.13.7/8.13.8/Nv5.2006.1109) with ESMTP id l5S3Zr7e010566 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for ; Wed, 27 Jun 2007 23:35:55 -0400 (EDT) Message-ID: <46833A10.80508@electronsweatshop.com> Date: Wed, 27 Jun 2007 23:33:20 -0500 From: Randy Barlow User-Agent: Thunderbird 2.0.0.4 (X11/20070620) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 To: Gentoo Users Subject: [gentoo-user] Open Relay - What Happened? Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-PMX-Version: 5.3.1.294258, Antispam-Engine: 2.5.0.283055, Antispam-Data: 2007.6.27.201732 X-Spam-Status: No, Hits=22% X-Spam-Level: XXII X-Archives-Salt: 090cf213-bbf9-4fc0-9b5a-eae23f257b81 X-Archives-Hash: aa8e4589cb4df3b61b143b1ca0bb629e So I'm running postfix on Gentoo, and have been doing so happily since about November. Until today I got a rejection for relayed mail notice from Road Runner. I read on their site that this happens when your IP address sends more than 1000 e-mails in 24 hours. My first thought was my windows-using roommates, but then I checked my e-mail server from the outside and indeed it was open. This is weird though, because I believe I have it configured for authenticated users only. I even tried setting it to only allow connections from this host, and still it happily accepts connections from outside and tries to relay those e-mails to other domains (of course, I would expect it to accept mail for electronsweatshop.com.) Here are some settings in /etc/postfix/main.cf that I think are relevant, anybody have any comments/criticisms/suggestions? myorigin = $myhostname mydestination = $myhostname, localhost.$mydomain, $mydomain mynetworks_style = subnet # I tried setting to host to see if that would # solve the problem (nope) smtpd_sasl_auth_enable = yes smtpd_sasl_security_options = noanonymous smtpd_sasl_local_domain = broken_sasl_auth_clients = yes # I've tried the following also adding reject_unauth_destination,reject_unknown_client, but that didn't solve the problem either smtpd_client_restrictions = permit_sasl_authenticated smtp_use_tls = yes smtpd_use_tls=yes smtpd_tls_auth_only = yes relayhost = smtp-server.carolina.rr.com # I actually have several domains listed here. Does anyone know how to get it to allow me to relay to all domains once I have properly authenticated? relay_domains = bunchofdomains.com smtpd_tls_security_level = may I fully appreciate any help anyone can offer. I made this setup just by following some guides I found here and there online, and don't really have a good grasp on the 6 volume manual that is postfix docs :) -- Randy Barlow http://electronsweatshop.com But you are a chosen race, a royal priesthood, a holy nation, a people for his own possession, that you may proclaim the excellencies of him who called you out of darkness into his marvelous light. Once you were not a people, but now you are God's people; once you had not received mercy, but now you have received mercy. ~1 Peter 2:9-10 -- gentoo-user@gentoo.org mailing list