public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-user] Portknock before Postfix delivery?
@ 2011-07-04  1:31 Pandu Poluan
  2011-07-04  2:55 ` Walter Dnes
                   ` (2 more replies)
  0 siblings, 3 replies; 7+ messages in thread
From: Pandu Poluan @ 2011-07-04  1:31 UTC (permalink / raw
  To: Gentoo-user

I'm just wondering...

I'm implementing an email gateway using postfix. The gateway lives as
a VM in my ISP, and it will deliver 'accepted' emails to the company's
email server which lives in the DMZ. The email server's port is
shifted to a non-25 external port number.

So far so good. However, a portscanner might still be able to detect
which port is open and attempt deliveries there.

So, the question: Is it possible to configure the system in some way
so that Postfix will first perform a portknocking before attempting
delivery to the internal mail server?

If that is not possible, what solution would you recommend to 'harden'
the non-25 mail port?

Rgds,


-- 
--
Pandu E Poluan - IT Optimizer
My website: http://pandu.poluan.info/



^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2011-07-04 13:47 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2011-07-04  1:31 [gentoo-user] Portknock before Postfix delivery? Pandu Poluan
2011-07-04  2:55 ` Walter Dnes
2011-07-04 10:14   ` Pandu Poluan
2011-07-04  7:22 ` Neil Bothwick
2011-07-04 10:15   ` Pandu Poluan
2011-07-04 12:49     ` Neil Bothwick
2011-07-04 13:46 ` Michael Orlitzky

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox