SMTP server security...

From: rakesh@isac.ernet.in
Date: 09/25/01


From: rakesh@isac.ernet.in
To: security-basics@securityfocus.com
Subject: SMTP server security...
Message-ID: <1001411929.3bb05559526aa@isacmail1>
Date: Tue, 25 Sep 2001 15:28:49 +0530 (IST)

We are planning to receive mails on Internet using Postfix as SMTP Server
on a unix box. Another system (which is part of the internal LAN having
non-unique IP-addresses in Internet domain) will receive/send mails
from/to the SMTP server by dialing through a modem to get connected to
the SMTP Server. At the SMTP server, only SMTP service will be running,
all other services will be disabled. Dialup modem is the only way to get
connected from Internet to Intranet(restricted to that system only).

Using the above approach, I want to know the followings:
1. What is the pitfall in this approach?
2. In what way, the system connected to Internal LAN is compromisable?
3. What may be the alternate solution except firewall solutions?
4. Can someone suggest some relevent Internet URL links for further
   exploration for such configuration?

Rakesh
======

-------------------------------------------------



Relevant Pages

  • Re: About those IMAP questions (was Re: Bogus From: Header ...)
    ... It sounds like the outgoing SMTP server you used is on one (or ... That's IF even adelphia will accept relayed messages, ... You want to get an email service provider that is ... You are going to get it *through the Internet*! ...
    (comp.mail.pine)
  • Re: dualhoming with a new domain
    ... This explains about recipient policies: ... > This problem involves hosting multiple domains on a dual-homed Exchange ... > internal LAN IP - this SMTP server sends mail out the door sometimes. ... > sessions with the third party provider to collect their Internet E-mail. ...
    (microsoft.public.exchange.connectivity)
  • Re: About those IMAP questions (was Re: Bogus From: Header ...)
    ... It sounds like the outgoing SMTP server you used is on one block list. ... This is a problem that everyone is having these days and is one of the reasons that I recommended that you get a backup email service provider. ... You want to get an email service provider that is completely independent of any of your Internet *access* providers. ...
    (comp.mail.pine)
  • Re: UOL Anti spam is back, again...
    ... AIUI, if you reject the message it is returned to sender, thus causing still more Internet traffic. ... smtp server. ... you gain conformity with RFC's by rejecting it whereas ... It's the RFCs and attitudes behind those RFCs that need modification. ...
    (Fedora)
  • Re: UOL Anti spam is back, again...
    ... OTOH I don't clog up the Internet with messages that no-one wants. ... point out to you that procmail is probably the wrong place to bit bucket ... smtp server. ... you gain conformity with RFC's by rejecting it whereas ...
    (Fedora)

Quantcast