Exchange SMTP Hole?
From: Tom Burns (tburns_at_torcausa.com)
Date: 11/11/03
- Previous message: Michael Bellears: "FTP server security."
- Next in thread: Geoff.Shatz_at_pchelps.com: "RE: Exchange SMTP Hole?"
- Maybe reply: Geoff.Shatz_at_pchelps.com: "RE: Exchange SMTP Hole?"
- Maybe reply: J-T Gaietto: "RE: Exchange SMTP Hole?"
- Reply: Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]: "Re: Exchange SMTP Hole?"
- Reply: Gerald Eisenhaur: "Re: Exchange SMTP Hole?"
- Maybe reply: Tom Burns: "RE: Exchange SMTP Hole?"
- Maybe reply: Sean Warnock: "RE: Exchange SMTP Hole?"
- Reply: Ted Quade: "Re: Exchange SMTP Hole?"
- Maybe reply: Chris Lynch: "RE: Exchange SMTP Hole?"
- Reply: Michele: "Re: Exchange SMTP Hole?"
- Maybe reply: Mark Norman: "RE: Exchange SMTP Hole?"
- Reply: Ken Schaefer: "Re: Exchange SMTP Hole?"
- Maybe reply: Darran Kartaschew: "RE: Exchange SMTP Hole?"
- Reply: Paul Kurczaba: "RE: Exchange SMTP Hole?"
- Reply: Marcin Firlag: "RE: Exchange SMTP Hole?"
- Maybe reply: Tom Burns: "RE: Exchange SMTP Hole?"
- Maybe reply: MTeixeira_at_njtransit.com: "RE: Exchange SMTP Hole?"
- Maybe reply: Tenorio, Leandro: "RE: Exchange SMTP Hole?"
- Maybe reply: Gary Everekyan: "RE: Exchange SMTP Hole?"
- Reply: Paul Kurczaba: "New Microsoft Exchange Server Vulnerability"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 11 Nov 2003 08:59:31 -0500 To: <focus-ms@securityfocus.com>
Good morning all,
I have an exchange server that's been running for quite some time (over
a year) and had it locked down to prevent relay (spam). It is patched
all the way up to 3a.
I checked my queues yesterday and got slammed by spam relaying.
Is there a security hole that MS does not know about yet in SMTP?????
The only way I resolved this was to block connection from 219.x.x.x,
218.x.x.x, 211.x.x.x, etc.
This server has been testing aginst ORDB.ORG and shown to NOT be an open
relay.
If anyone has any suggestions, please let me know.
Thomas A. Burns
System Administrator
Torca Products Inc.
Auburn Hills, MI 48326
248-373-8300 x186
---------------------------------------------------------------------------
Network with over 10,000 of the brightest minds in information security
at the largest, most highly-anticipated industry event of the year.
Don't miss RSA Conference 2004! Choose from over 200 class sessions and
see demos from more than 250 industry vendors. If your job touches
security, you need to be here. Learn more or register at
http://www.securityfocus.com/sponsor/RSA_focus-ms_031027
and use priority code SF4.
---------------------------------------------------------------------------
- Previous message: Michael Bellears: "FTP server security."
- Next in thread: Geoff.Shatz_at_pchelps.com: "RE: Exchange SMTP Hole?"
- Maybe reply: Geoff.Shatz_at_pchelps.com: "RE: Exchange SMTP Hole?"
- Maybe reply: J-T Gaietto: "RE: Exchange SMTP Hole?"
- Reply: Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]: "Re: Exchange SMTP Hole?"
- Reply: Gerald Eisenhaur: "Re: Exchange SMTP Hole?"
- Maybe reply: Tom Burns: "RE: Exchange SMTP Hole?"
- Maybe reply: Sean Warnock: "RE: Exchange SMTP Hole?"
- Reply: Ted Quade: "Re: Exchange SMTP Hole?"
- Maybe reply: Chris Lynch: "RE: Exchange SMTP Hole?"
- Reply: Michele: "Re: Exchange SMTP Hole?"
- Maybe reply: Mark Norman: "RE: Exchange SMTP Hole?"
- Reply: Ken Schaefer: "Re: Exchange SMTP Hole?"
- Maybe reply: Darran Kartaschew: "RE: Exchange SMTP Hole?"
- Reply: Paul Kurczaba: "RE: Exchange SMTP Hole?"
- Reply: Marcin Firlag: "RE: Exchange SMTP Hole?"
- Maybe reply: Tom Burns: "RE: Exchange SMTP Hole?"
- Maybe reply: MTeixeira_at_njtransit.com: "RE: Exchange SMTP Hole?"
- Maybe reply: Tenorio, Leandro: "RE: Exchange SMTP Hole?"
- Maybe reply: Gary Everekyan: "RE: Exchange SMTP Hole?"
- Reply: Paul Kurczaba: "New Microsoft Exchange Server Vulnerability"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|