Avatar of scm0sml
scm0sml
 asked on

Reconfigure your SMTP server so that it cannot be used as a relay any more

Hi,

I have a vps and host a number of websites on it.

I'm trying to get this pci compliant and something that has been thrown up is:
"      Description: MTA Open Mail Relaying Allowed Synoposis: An open SMTP relay is running on this port. Impact: The remote SMTP server appears to allow mail relaying"

It says I need to:
Reconfigure your SMTP server so that it cannot be used as a relay any more

How do I do this and will it effect the users who access their mail via outlook etc?

Thanks in advance.
Server HardwareInternet ProtocolsMicrosoft IIS Web Server

Avatar of undefined
Last Comment
scm0sml

8/22/2022 - Mon
ASKER CERTIFIED SOLUTION
ElleCoc

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
SOLUTION
Andrew Davis

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
scm0sml

ASKER
I know that probably makes sense to you but could you elaborate more as I'm pretty new to this?

Some example links would be helpful?
SOLUTION
Metaltree

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
⚡ FREE TRIAL OFFER
Try out a week of full access for free.
Find out why thousands trust the EE community with their toughest problems.
scm0sml

ASKER
OK thanks guys.

Right they are accessing via POP.

Is mailenable the mailserver?

Its a vps windows 2008 r2....

Hope that helps a bit more?

The relay is being checked externally by the way.
scm0sml

ASKER
This is the mail settings for the server via plesk control pane;mail settings via plesk
Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy
Metaltree

Usually those PCI compliance scans they do are basically port related. I'm assuming if you lock down port 25 as I explained earlier, it will pass the compliance. It looks like you have authorization required on SMTP, so I'm not sure if its server related.
Andrew Davis

Those mail settings look correct. Assuming that that is the service that is bound to port 25. As per previous post the open relay chaeck may only be checking that port 25 is open, which it should be as this is a server.

can you run the open relay test found here http://www.dnsgoodies.com/index.htm and let us know the result.

Cheers
scm0sml

ASKER
It seems that was a red-herring.

Upgrading a number of different things on the server such as php, plesk etc meant the problem went away so I never got around to needing this.

How should I allocate points on this?
⚡ FREE TRIAL OFFER
Try out a week of full access for free.
Find out why thousands trust the EE community with their toughest problems.
Andrew Davis

Either request a delete, or split points between those who helped. Your call.

Glad to hear it's working.
Cheers
scm0sml

ASKER
thanks for attempting to help