Solved

Relay problem - blocking spammers - anonymous/basic/windows integrated authentication

Posted on 2008-10-06
7
343 Views
Last Modified: 2013-11-30
I send tons of email to customers who get their messages from us.  because some of my systems use an email addresse for actually sending, and also use a second address as the "sender", Exchange considers this a relay.  As a result I have to leave Anonymous, Basic, and WIndows Integrated authentication turned on.  I have a spmmer doing relay off my server now.  He is sending email with addresses such as this one:
 "ScotiaBank Update<customerservice@id7013146863.eppicard.com>".
How can I block these when I encounter one, without getting in the way of the rest of my outgoing email?
0
Comment
Question by:colorbars
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
7 Comments
 
LVL 8

Expert Comment

by:sstone55423
ID: 22654967
YOur exchange has to allow relay based on IP address, rather than based on domain name.  Any spammer can spoof your domain name once they figure out that you have it configured that way.
0
 

Author Comment

by:colorbars
ID: 22655047
How do I do that?  DO I create a recipient policy?  Do I create a list somewhere of IP's to allow or block?  Where do I create thie list and manage it?

Thanks!

Jim K.
0
 
LVL 8

Expert Comment

by:sstone55423
ID: 22655126
Hmmm,   You have Exchange Server 2003?  SMTP is either under the properties of the SMTP virtual server (servers | protocols)  or as a connector under the "Relay Restrictions" tab, and then "only the list below" and populate it with the ip networks within your organization.
0
Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

 
LVL 8

Accepted Solution

by:
sstone55423 earned 125 total points
ID: 22655164
I see I expressed myself badly in the last  message.  The relay restrictions is under the virtual server properties.  The connector is is a different place.  The connectors are found under ROuting Groups, Organization, connectors, Internet Mail Service properties.  I think the connector is only for outbound connections though.
0
 
LVL 8

Assisted Solution

by:smeek
smeek earned 125 total points
ID: 22655992
If you have multiple devices/systems that need to bounce email off your Exchange server, you can just add them specifically as relays to your SMTP Virtual Server.  You could also programmatically have them authenticate if they are applications or some systems.  Here are more details on relaying.
http://www.petri.co.il/preventing_exchange_2000_2003_from_relaying.htm

Steve

0
 

Author Comment

by:colorbars
ID: 22661724

Well, it appears I was on the right track.  I still can;t make things work the way I would like.  I did notice that in the list box where you can add IP's of computers you want to allow relay to without authentication, thatif I put in the public IP of my mail server, and the internal computers I want to be able to relay off the mail server, my mail goes out.  But I have no way of knowing if the spammers email will get on here and go out.  If I remove the public email server IP, then NO mail goes out.  I'd much rather get it working just allowing internal IP's to relay, then I know I am keeping out illicit spammer relays.  SO thanks Steve for the link!  It is helping to confirm or at least let me know I am in the right place.  Now I just need to figure out the right combination of outbound connection settings, outbound authentication, outbound security, etc.  I have not found it yet.  I can only let everyone relay it seems.  Also, in addition to allowing the public mail IP, I have to have the user "Everyone" in the users allowed box with the relay permission enabled.
0

Featured Post

Salesforce Has Never Been Easier

Improve and reinforce salesforce training & adoption using WalkMe's digital adoption platform. Start saving on costly employee training by creating fast intuitive Walk-Thrus for Salesforce. Claim your Free Account Now

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This article lists the top 5 free OST to PST Converter Tools. These tools save a lot of time for users when they want to convert OST to PST after their exchange server is no longer available or some other critical issue with exchange server or impor…
Pop culture is prime bait for hackers seeking to infect user’s computers and mobile devices with malicious malware. Hackers know exactly what the latest trends are online and know how to use them to their advantage.
In this Micro Video tutorial you will learn the basics about Database Availability Groups and How to configure one using a live Exchange Server Environment. The video tutorial explains the basics of the Exchange server Database Availability grou…
The viewer will learn how to successfully create a multiboot device using the SARDU utility on Windows 7. Start the SARDU utility: Change the image directory to wherever you store your ISOs, this will prevent you from having 2 copies of an ISO wit…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question