Re: [Full-Disclosure] [MISC] SBC Blocks Port 25 - No Exceptions.

From: Sean Donelan (sean_at_donelan.com)
Date: 01/16/05

  • Next message: Marc Haber: "Re: [Full-Disclosure] iDEFENSE Security Advisory 01.14.05: Exim dns_buld_reverse() Buffer Overflow Vulnerability"
    Date: Sat, 15 Jan 2005 20:57:46 -0500 (EST)
    To: full-disclosure@lists.netsys.com
    
    

    Although it would be best if the SBC call center provided the
    information, it appears some inaccurate information has been
    provided. I apologize for the inconvience and incorrect information.

    SBC began to apply SMTP port 25 filters on Broadband and Dialup
    connections using DYNAMIC IP addresses in October 2004. This
    includes both residential and businesses using DYNAMIC IP
    addresses on broadband or dialup connections. The change was
    announced by SBC in the September 2004 customer newsletter and
    on the SBC web site.

    The SMTP port 25 filters are NOT being applied to broadband connections
    using STATIC IP addresses nor to dedicated connections such as T1/T3 or
    ATM/Frame-relay circuits. A few customers with so-called "Sticky"
    IP addresses may have accidently had a port 25 filter applied, but
    they should now be automatically opted-out of the port 25 filter like
    other customers with STATIC IP addresses.

    The difference is connections using Dynamic versus Static (Sticky) IP
    addresses; not business or consumer accounts.

    Mail servers typically use connections with STATIC IP addresses,
    and are fairly rare (except for viruses) on Dynamic IP addresses.
    Mail user agents (Outlook, Eurdora, Netscape, etc) are more common
    on Dynamic IP addresses.

    Mail user agents using any of the following will NOT be affected by
    the SMTP port 25 filters applied by SBC (or other ISPs).

       1. Your ISP's servers as a smarthost for outbound SMTP Port 25
       2. RFC 2476 Message Submission Protocol on Port 587
       3. Virtual Private Network (or PPTP) to a private mail server
       4. Web mail (Outlook Web Access and other Web mail services)

    It would be nice if more mail servers and clients supported those by
    default. Unfortunately most mail clients still use port 25 by default
    and will require a change. The good news is you can make those changes
    anytime without waiting until the day your ISP begins to follow the
    recommendations published by the Anti-Spam Technical Alliance, which
    includes Microsoft, Yahoo, AOL and Earthlink.

    Extremely few customers with Dynamic IP addresses operate their own
    SMTP servers. SBC suggests customers first consider if they can
    use any of the alternatives, in case one of the customer's computers
    is ever infected by an e-mail virus in the future.

    Nevertheless, those few customers which desire to send outbound
    SMTP (port 25) e-mail directly from Dynamic IP address and can not
    use any of the alternatives given above, may contact SBC to opt-out
    of the port 25 filter on their Dynamic IP account. The account
    should be updated the same day the request is made (usually within
    a few hours). The next time the DSL modem is reset, it will get
    the new filter. You may request the change before or after the
    SMTP port 25 filters are implemented in your city. Again, please
    consider using one of the other alternatives first.

    Be sure to give the PPPOE account ID in the opt-out request and
    reset your DSL modem after the account is updated. If you give a
    different e-mail address or forget to reset the DSL modem, the
    connection won't get the updated filter and it may appear as if
    your account is still filtered long after the account was updated.
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Marc Haber: "Re: [Full-Disclosure] iDEFENSE Security Advisory 01.14.05: Exim dns_buld_reverse() Buffer Overflow Vulnerability"

    Relevant Pages

    • Re: trouble sending email
      ... SBC is starting to block port 25 outbound. ... will depend upon GoDaddy. ... you will have to ask SBC to unblock port 25 on your account. ...
      (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
    • Re: I can receive email but cannot send it.
      ... Sure would have been nice if SBC had told us..... ... instructions but I think that will clear up too with SBC lifting the filter. ... SBC is implementing outbound SMTP port controls to ... Members not using Web mail access or SBC mail servers, ...
      (microsoft.public.outlook.general)
    • Re: HELP: BizTalk 2004 Direct Port to Message Box - Delivered not consumed
      ... Have to tighten up the filter expression - because once i subscribe to ... Message box direct bound ports, as its name implies, allows you to drop ... bound port set the 'Partner Orchestration Port' property to ... an activating receive shape the subscription will be the message type ...
      (microsoft.public.biztalk.general)
    • Re: Scanning--more then one side to the argument
      ... PORT STATE SERVICE VERSION ... Filtered means that a firewall, filter, or other network obstacle ... >> I would say that any open port POTENTIALLY could be a security issue ... just being networked could be a risk. ...
      (Security-Basics)
    • Re: Microsoft Strategic Technology Protection Program
      ... the default setting when specifying a filter in the 'IP ... outbound TCP *sessions*. ... This would mean that the web server cannot use port ... if you set up a mirrored filter in IPSec, ...
      (NT-Bugtraq)