Solved

Help me understand SMTP server bounces and lockdown

Posted on 2003-11-15
3
476 Views
Last Modified: 2013-11-30
I'm using Win 03 Server Pro and the bundled Virtual SMTP server. I'm storing email addresses in SQL Server and sending auto verification message using a 3rd party DLL (xp_smtp_sendmail) - not exchange server or MAPI client. I need to understand what happens when a user stores an invalid email address - well formed but invalid -

It would end up in the Badmail directory?
It will re-try until Expiration timeout setting?


On the lock down side of things...

This server functions as a web server (sits in Web Service Provider farm) and needs to provide outbound mail for the local SQL Server, ASP pages and the occastional direct email from the System Admin. Given that profile, what setting should i implement to for adaquate security?

0
Comment
Question by:juststeve
  • 2
3 Comments
 
LVL 21

Expert Comment

by:marc_nivens
ID: 9778303
If the application were to try to send an email to an invalid address via Win2k3 SMTP, the message would be NDR'd.  Badmail is for NDR's that cannot be returned to sender due to an invalid from address.  So if your application were using a bogus from address, then these messages would in fact end up in badmail.

As far as security (at the SMTP level at least) you should lock down the relay settings for the virtual server.  Make sure the list for allow relay says "only the list below", and that the local server is the only one listed.
0
 

Author Comment

by:juststeve
ID: 9778878
Thnkx. What's the DROP folder for?
0
 
LVL 21

Accepted Solution

by:
marc_nivens earned 350 total points
ID: 9784379
You can take any propery formatted message and put it in the drop folder to be queued for delivery.  SMTP enabled apps that run on the server often do this.
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Check the owner of ip and host name 6 73
email complexities 2 30
Inheriting Gmail contacts into Outlook? 2 58
Tracking Bouncebacks in PHPMailer 3 38
Pegasus Mail (http://www.pmail.com/) is a donation ware that is a collaboration of David Harris along with his team members. It is a desktop mail client that offers the option of configuring more than one mail account with single set up. It supports…
This is my first article on Expert Exchange on the Manual Method of Exporting Office 365 Mailboxes to PST format by using the eDiscovery mechanism of Office. Hope you will enjoy the article.
Many of my clients call in with monstrous Gmail overloading issues with Outlook. A quick tip is to turn off the All Mail and Important folders from synching. Here is a quick video I made to show you how to turn off these and other folders in Gmail s…
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …

910 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now