On 04/02/13 09:17, Sam Varshavchik wrote: >> I set up one small VPS as an alternate outgoing mail server for those >> times when our main mailservers gets blacklisted and do not want it to >> handle incoming mail or act as a 2nd MX. > > But how are you getting mail to your backup outgoing server? Probably > by SMTP from your main servers, so you can't really shut down smtp.
It's a VPS, as in a virtual private server, not a VPN although I should have considered that option. Main mailserver gets blocked, clients who have issues are advised to change their outgoing mailserver setting to alternate server, they otherwise send normally (ie, authenticated via ports 465/587) and this server relays these messages to the rest of the world from a different source address. I just don't want any mail from the outside world coming back into this server via port 25 and would rather not have port 25 even showing up in a port scan so potential spammers don't even try. Ideally, on this server, I just want to expose ports 22 and 587 and that's all. The port 587 authentication is done via a ssh tunnel back to the main servers MySQL database so even port 3306 is not exposed (either end). ------------------------------------------------------------------------------ Own the Future-Intel(R) Level Up Game Demo Contest 2013 Rise to greatness in Intel's independent game demo contest. Compete for recognition, cash, and the chance to get your game on Steam. $5K grand prize plus 10 genre and skill prizes. Submit your demo by 6/6/13. http://altfarm.mediaplex.com/ad/ck/12124-176961-30367-2 _______________________________________________ courier-users mailing list courier-users@lists.sourceforge.net Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users