[Previo por Fecha] [Siguiente por Fecha] [Previo por Hilo] [Siguiente por Hilo]

[Hilos de Discusión] [Fecha] [Tema] [Autor]

[Sop.Tec.LinuxPPP] Open Relay...



Hola a todos, me ha llegado el siguiente e-mail:
****************************************

You are receiving this message because someone, who is having
difficulty sending email to AOL, used AOL's open relay tester
tool at postmaster.info.aol.com to notify you that this server
is open to third party/free relaying and is blocked by AOL. Anyone using this server will be unable to send mail to AOL users until this server is closed to free relaying.
If this server is intentionally open and you wish it never to be tested
again, send us an email with the subject line "forever open,
don't test", and put your IP address into the body of the email,
to openrelay en aol net, and AOL will put you on the "forever open,
don't test" list. ** Please keep in mind that your server will remain blocked until you disable free relaying and ask us to begin testing your server again.**

Below, you will see output from our database indicating which
tests we performed on your system, and the time at which the
last test was performed.

For example, if you see:

mail from:<CloseYourOpenRelay en aol com>
rcpt to:<CloseYourOpenRelay en aol com>

it means we were able to send a piece of mail with a "from"
address of "CloseYourOpenRelay en aol com" through your system,
back to the email account "CloseYourOpenRelay en aol com".  (The
email account "CloseYourOpenRelay en aol com doesn't exist -- it's
greater than 16 characters -- but the fact that your server
tried to deliver it indicates that you're open to free relaying. We encourage you to use this email address as a test... you will
receive bounced mail back from AOL's Mailer-Daemon if you are
open to free relaying.)

Here's your server data:

Date: Wed May 28 14:04:00 2003
mail from: <CloseYourOpenRelay en aol com>
rcpt to: <CloseYourOpenRelay en aol com>
rcpt to: <CloseYourOpenRelay%aol.com@63.110.191.49>

The date/time stamp above indicates when the last test of your
server occurred.  Our automated processes retest all servers
every 24 hours.  If you close your relay within 24 hours of the
last test, at the next test, your server's disposition in our
database will change from "open" to "closed".  The change will
then be picked up for the next system push to clear your entry
from our block list.  System pushes occur several times within a
24 hour period, however, server retesting occurs only every 24
hours.

The AOL Postmaster Team
****************************************

Tengo mi /etc/mail/access de la siguiente forma:

# This file is automatically generated
# Please put custom changes at the end

# Put custom additions below (Do not change/remove this line).

10.10.11.21     RELAY
10.10.11.22     RELAY
10.10.11.23     RELAY
10.10.11.24     RELAY
10.10.11.71     RELAY
#63.110.191.48  RELAY
10.10.10        RELAY
#com    RELAY
ipsgroup1.com   RELAY
# No mails from Hotmail
hotmail.com     REJECT
# No mails from Yahoo
yahoo.com       REJECT
yahoo.com.mx    REJECT

con el cual cree el hash (makemap hash /etc/mail/access < /etc/mail/access.db)

y he reiniciado el server, desde el viernes, segun ellos cada 24 horas corren un escaneo, pero me siguen enviando esta notificación ya he checado con
telnet relay-test.mail-abuse.org

y me dio lo siguiente:

***********************
Trying 204.152.187.123...

Connected to cygnus.mail-abuse.org.

Escape character is '^]'.

Connecting to 63.110.191.49 ...
<<< 220 ipsgroup1-eth1.com ESMTP Sendmail 8.10.2/8.10.2; Fri, 30 May 2003 09:45:50 -0700
<<< 220 ipsgroup1-eth1.com ESMTP Sendmail 8.10.2/8.10.2; Fri, 30 May 2003 09:45:50 -0700
HELO cygnus.mail-abuse.org
<<< 250 ipsgroup1.com Hello cygnus.mail-abuse.org [204.152.187.123], pleased to meet you
<<< 250 ipsgroup1.com Hello cygnus.mail-abuse.org [204.152.187.123], pleased to meet you
:Relay test: #Quote test
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 1
mail from: <nobody en mail-abuse org>
<<< 250 2.1.0 <nobody en mail-abuse org>... Sender ok
<<< 250 2.1.0 <nobody en mail-abuse org>... Sender ok
rcpt to: <nobody en mail-abuse org>
<<< 550 5.7.1 <nobody en mail-abuse org>... Relaying denied.  Please check your mail first.
<<< 550 5.7.1 <nobody en mail-abuse org>... Relaying denied.  Please check your mail first.
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 2
mail from: <spamtest en maps1 pa vix com>
<<< 501 5.1.8 <spamtest en maps1 pa vix com>... Domain of sender address spamtest en maps1 pa vix com does not exist
<<< 501 5.1.8 <spamtest en maps1 pa vix com>... Domain of sender address spamtest en maps1 pa vix com does not exist
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #test 3
mail from: <spamtest@localhost>
<<< 553 5.5.4 <spamtest@localhost>... Real domain name required
<<< 553 5.5.4 <spamtest@localhost>... Real domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 4
mail from: <spamtest>
<<< 553 5.5.4 <spamtest>... Domain name required
<<< 553 5.5.4 <spamtest>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 5
mail from: <>
<<< 250 2.1.0 <>... Sender ok
<<< 250 2.1.0 <>... Sender ok
rcpt to: <nobody en mail-abuse org>
<<< 550 5.7.1 <nobody en mail-abuse org>... Relaying denied.  Please check your mail first.
<<< 550 5.7.1 <nobody en mail-abuse org>... Relaying denied.  Please check your mail first.
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 6
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 7
mail from: <spamtest@[63.110.191.49]>
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
rcpt to: <nobody en mail-abuse org>
<<< 550 5.7.1 <nobody en mail-abuse org>... Relaying denied.  Please check your mail first.
<<< 550 5.7.1 <nobody en mail-abuse org>... Relaying denied.  Please check your mail first.
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 8
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 9
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 10
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 11
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 12
mail from: <spamtest@[63.110.191.49]>
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
rcpt to: <nobody en mail-abuse org@">
<<< 553 5.0.0 <nobody en mail-abuse org@">... Unbalanced '"'
<<< 553 5.0.0 <nobody en mail-abuse org@">... Unbalanced '"'
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 13
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 14
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 15
mail from: <spamtest@[63.110.191.49]>
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
rcpt to: <@:nobody en mail-abuse org>
<<< 553 5.1.3 <@:nobody en mail-abuse org>... Colon illegal in host name part
<<< 553 5.1.3 <@:nobody en mail-abuse org>... Colon illegal in host name part
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 16
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #Test 17
mail from: <spamtest@[63.110.191.49]>
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
<<< 250 2.1.0 <spamtest@[63.110.191.49]>... Sender ok
rcpt to: <mail-abuse.org!nobody>
<<< 550 5.7.1 <mail-abuse.org!nobody>... Relaying denied.  Please check your mail first.
<<< 550 5.7.1 <mail-abuse.org!nobody>... Relaying denied.  Please check your mail first.
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #test 18
mail from: <spamtest@>
<<< 553 5.5.4 <spamtest@>... Domain name required
<<< 553 5.5.4 <spamtest@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
:Relay test: #test 19
mail from: <postmaster@>
<<< 553 5.5.4 <postmaster@>... Domain name required
<<< 553 5.5.4 <postmaster@>... Domain name required
rset
<<< 250 2.0.0 Reset state
<<< 250 2.0.0 Reset state
QUIT
<<< 221 2.0.0 ipsgroup1.com closing connection
<<< 221 2.0.0 ipsgroup1.com closing connection
Tested host banner: 220 ipsgroup1-eth1.com ESMTP Sendmail 8.10.2/8.10.2; Fri, 30 May 2003 09:45:50 -0700
System appeared to reject relay attempts
*********************************


Por lo que veo que aparentemente esta bien, igual que en http://www.paladincorp.com.au/unix/spam/spamlart/
me menciona que esta ok, ahora bien .... la pregunta de los 60 Mil

Hay algo en el sendmail.cf que pueda modificar para no permitir el envio de e-mail con los datos ejemplos que me ponen estos batos que es mas grande de 16 caracteres?
mail from:<CloseYourOpenRelay en aol com>
rcpt to:<CloseYourOpenRelay en aol com>





Espero sus comentarios ya que me traen juido con esta onda.
Gracias por su ayuda.

OrvUx
Making the Hard...Soft with Linux ;)



--
Lista de soporte de LinuxPPP
Dirección email: Linux en linuxppp com
Dirección web: http://mail.linuxppp.com/mailman/listinfo/linux
Reglas de la lista: http://linuxppp.net/reglas.html



[Hilos de Discusión] [Fecha] [Tema] [Autor]