Re: educating rDNS violators

From: Bryan S. Sampsel (bsampsel_at_libertyactivist.org)
Date: 08/29/04

  • Next message: Gideon T. Rasmussen, CISSP, CISM, CFSO, SCSA: "U.S. National Security Awareness Day (NSAD)"
    Date: Sun, 29 Aug 2004 07:58:37 -0600 (MDT)
    To: security-basics@securityfocus.com
    
    

    Authenticated SMTP. Sendmail has it. I've even seen it on some Windows
    based email servers. Can't remember if Qmail has it or not though...

    And there's some method of kludging the client to use the POP or IMAP
    client to send instead of receive.

    You might also have the client VPN in and their VPN IP is placed into the
    trusted range for relay...and rDNS wouldn't break anything then. Just a
    thought.

    Sincerely,

    Bryan S. Sampsel
    LibertyActivist.org

    Mark Reis said:
    > A question for those who have implemented rDNS restrictions.
    >
    > In the case of a mail server with roaming users, how do you deal with
    > roaming users? A majority of our users travel to conferences and use
    > secure IMAP and SMTP to send their mail. Perhaps this is a
    > misconception, but I thought that some mail clients attempt to portray
    > themselves as a SMTP server relaying through the main mail server. If
    > we have users off traveling and having their email is blocked while they
    > were connected at a hotel with bad rDNS entries, I'd be getting ticked
    > off calls.
    >
    > Any suggestions?
    >
    > Thanks,
    > Mark
    >
    > ---------------------------------------------------------------------------
    > Computer Forensics Training at the InfoSec Institute. All of our class
    > sizes
    > are guaranteed to be 12 students or less to facilitate one-on-one
    > interaction with one of our expert instructors. Gain the in-demand skills
    > of
    > a certified computer examiner, learn to recover trace data left behind by
    > fraud, theft, and cybercrime perpetrators. Discover the source of computer
    > crime and abuse so that it never happens again.
    >
    > http://www.infosecinstitute.com/courses/computer_forensics_training.html
    > ----------------------------------------------------------------------------
    >

    ---------------------------------------------------------------------------
    Computer Forensics Training at the InfoSec Institute. All of our class sizes
    are guaranteed to be 12 students or less to facilitate one-on-one
    interaction with one of our expert instructors. Gain the in-demand skills of
    a certified computer examiner, learn to recover trace data left behind by
    fraud, theft, and cybercrime perpetrators. Discover the source of computer
    crime and abuse so that it never happens again.

    http://www.infosecinstitute.com/courses/computer_forensics_training.html
    ----------------------------------------------------------------------------


  • Next message: Gideon T. Rasmussen, CISSP, CISM, CFSO, SCSA: "U.S. National Security Awareness Day (NSAD)"

    Relevant Pages

    • Re: javamail send error
      ... I am using javamail 1.4 API to send messages through a SMTP server. ... How is authentication configured on your mail server? ... Some mail servers will offer AUTH on the normal SMTP port of 25 and some will ...
      (comp.lang.java.programmer)
    • RE: SMTP
      ... which is a mail server at the ISP. ... Exchange System Manager. ... To get to the SmallBusiness SMTP connector in the Exchange System Manager, ...
      (microsoft.public.windows.server.sbs)
    • Re: SMTP problems
      ... SMTP server, the problem may be due to: ... >> not connected using 'ana2writing.org' as your ISP. ... TCP/IP port 25 except to their own SMTP mail server.) ...
      (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
    • Re: SMTP Relay....Driving me crazy....
      ... The confusing part is the 'free little mail server' and why you would run ... I can receive by SMTP) but I must relay out through the ISP's ...
      (microsoft.public.windows.server.sbs)
    • Re: delayed e-mails
      ... Firewall implemented in front of Exchange server. ... reconfigure PIX/Watchguard Firewall to pass SMTP verb commands. ... |> firstly to postmaster@[the mail server name]. ...
      (microsoft.public.windows.server.sbs)