Hi
Matt:
Imail
already verifies its own user base - they have no reason to enable someone else
to do it on the same server. If anything, we should lobby THEM directly to
detect dictionary attacks (too many unknown users per time period during the
same connection or from the same IP address). That would
eliminate the need to run IIS SMTP on the same system?
My
goal should/would be to provide for IIS SMTP to run
stand-alone.
However, I wasn't thinking of the "dictionary attack" as a unique
feature.
The
"poor man's" dictionary attack fend-off would simply be a side effect of the
Imail user base checking. Sure, the spammer could still CONNECT to IIS
SMTP, but would not be able to submit email with an invalid "TO" address, if IIS
were to check the IMAIL user base. That itself would address the current problem
where mail IS accepted by the Backup MX, then passed on to the IMail primary MX
- where it is rejected. Now the Backup MX is tasked with sending hundreds
of thousands of bounce messages. THAT is the (occasional) problem I'm
trying to avoid.
I can
live with the fact, that the connection is only dropped at the RCPT
TO, instead of a little earlier at the HELO/EHLO. A "real" dictionary
attack defense would have to update my router ACLs to actually reduce traffic to
the mail servers. Best
Regards
|
Title: Message
- Re: [Declude.JunkMail] [Declude.Junkmail] MS SMT... Sanford Whiteman
- Re: [Declude.JunkMail] [Declude.Junkmail] M... Matt
- RE: [Declude.JunkMail] [Declude.Junkmai... John Tolmachoff \(Lists\)
- RE: [Declude.JunkMail] [Declude.Junkmai... Andy Schmidt
- Re: [Declude.JunkMail] [Declude.Jun... Matt
- [Declude.JunkMail] OT: IMail LD... Andy Schmidt
- Re[2]: [Declude.JunkMail] [Decl... Sanford Whiteman
- Re: [Declude.JunkMail] [De... Matt
- Re[2]: [Declude.JunkMa... Sanford Whiteman
- Re: [Declude.JunkMail] [Declude... Andy Schmidt
- Re: [Declude.JunkMail] [De... Matt
- RE: [Declude.JunkMail]... Andy Schmidt
- Re[2]: [Declude.Ju... Sanford Whiteman
- Re: [Declude.JunkM... Matt
- Re[2]: [Declude.JunkMail] [Declude.... Sanford Whiteman
- Re: [Declude.JunkMail] [Declude... Matt
- Re[2]: [Declude.JunkMail] ... Sanford Whiteman
- Re: [Declude.JunkMail]... Matt
- Re[2]: [Declude.Ju... Sanford Whiteman
- [Declude.JunkMail] OT: IMAIL -&... Andy Schmidt