Advertisement

02.21.2007 at 02:39PM PST, ID: 22405003
[x]
Attachment Details
[x]
The Solution Rating System

With so many solutions, how can you tell which solutions are most likely to help you and which ones are not? To provide you with a tool to use, we rate our solutions based on various elements that most accurately determine if a solution is a quality solution. To explain what factors affect the solution rating, here are the elements we take into consideration when formulating our solution rating.

  • The Grade of the Solution
  • The Zone Rank of the Expert Providing the Solution
  • The Number of Author and Expert Comments
  • The Number of Experts Contributing
  • The Feedback of the Community

Your Input Matters
Because of the way the system is set up, the most important variable in this equation is you. As a member of Experts Exchange, you are able to cast your vote on the quality of the solutions in regard to how complete, accurate, helpful and easy to understand each solution is. When you provide your feedback, each rating is adjusted accordingly. So, if you see a solution that has a poor rating that you think is a good solution, let us know by rating it. As you do, the rating will be adjusted and will become more accurate for other members of our site.

If you have any suggestions that you would like to make for our rating system, please ask a question in the Suggestions Zone of Community Support.

Thank you!

6.6

SMTP Relaying with hosting Exchange Server

Asked by SonOfPirate in Windows Network Security, Exchange Email Server, Miscellaneous Security

Tags: , ,

Okay, I am sure all of this has been touched upon before, but I am at my wits end and need to throw all of this on the table so that I can get answers to my dilemma.

I am running Exchange 2000 for a small business that hosts its own email as well as the email of several of its smaller clients, each with their own dedicated domain name.  My problem arose when a new client was added, setup the same way all of the others have been, but they have been unable to send mail using Outlook as the client.  They have full access when using the Outlook Web Access interface.

When I looked into this further, it appeared like I may have a hacker/spammer problem...okay, no.  I DO have a spammer problem and I don't know how to deal with it AND provide access via Outlook to our external clients.

Everything I have read indicates that we should have all three types of authentication enabled for the Default SMTP Server,which I do.  I understand that we have to have anonymous authentication enabled or else no one in our domain(s) will be able to receive mail from outside.  It is my understanding that turning this off means that other servers trying to deliver mail to our accounts will be unable to because our server will reject them.  If that's correct then I understand the need to leave this turned on.

Under Relay Restrictions we have the Only the List Below option select with a blank list.  I read that this is correct as selecting "All But The Following" turns us into an open relay and we definitely don't want that!  There seems to be some debate about the "Allow all computers..." checkbox but I have it selected.

The client that is unable to send e-mail from Outlook is able to do so when I select the "All But The Following".  Obviously, I can't leave this setting!

I am able to verify that we are being used for relaying by watching the connections on TCP port 25 and monitoring the Queues listed under the Default SMTP Server in Enterprise Manager.  I've performed whois checks on a number of the IP addresses that attempt connections and have found many from Asia, Aftrice and Latin America.  Coinciding with these connections are the additional queues that appear with messages sent from "postmaster@mydomain.com" - I don't have a postmaster user defined so I am taking this as evidence that these are messages being relayed through our server masked to look like they came from us - SPAM!!!!

Gven the information I have read thus far, I don't understand how we can block these unwanted outside users from relaying through our servers, continue to allow legitimate messages to come into our servers for our users AND allow our remote clients to send and receive messages.  Except I know that this is how it is done and there are probably hundreds of hosting services out there doing exactly this.

Can someone please clarify the purpose of each of these settings when it comes to a hosting environment such as this and what steps I can take to eliminate the relaying that is taking place and get my clients up and running with Outlook?
Start Free Trial
 
Loading Advertisement...
 
[+][-]02.21.2007 at 03:47PM PST, ID: 18583320

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zones: Windows Network Security, Exchange Email Server, Miscellaneous Security
Tags: exchange, smtp, server
Sign Up Now!
Solution Provided By: Sembee
Participating Experts: 2
Solution Grade: A
 
 
[+][-]02.21.2007 at 05:46PM PST, ID: 18583989

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.22.2007 at 04:19AM PST, ID: 18586771

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.22.2007 at 05:08AM PST, ID: 18587039

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.22.2007 at 02:04PM PST, ID: 18592005

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.22.2007 at 05:36PM PST, ID: 18593102

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.23.2007 at 05:21AM PST, ID: 18595561

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.23.2007 at 10:35AM PST, ID: 18598144

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.23.2007 at 10:45AM PST, ID: 18598216

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]11.06.2007 at 12:34AM PST, ID: 20222167

Experts Exchange has a courteous staff of administrators who help members get the most out of the website by means of administrative comments like this one.

Start your 7-day free trial to view this Administrative Comment or ask the Experts your question.

 
 
Loading Advertisement...
20080716-EE-VQP-32