Chet,

> This  is  incorrect. After looking at the security tab I should have
> clarified (thought I did in my first post, guess not) I have disable
> smtp  auth  reporting checked.

You  did  not  have  this  checked yesterday or the day before, so I'm
assuming  you  just  turned  it on. You are correct that this will now
give you more protection. However...

> So  I  can  send  since  I  am local on the network, but no user can
> connect in and send even if they include the smtp login information.

...your faith in this is overstrong. Disabling EHLO reporting does not
disable  the  AUTH  function  itself.  If an MUA (custom or otherwise)
sends AUTH creds, they will be honored:

> 220 X1 NT-ESMTP Server mail3.oldmanmurray.com (IMail 7.06 23545-6)
> ehlo
> 250-mail3.oldmanmurray.com says hello
> 250-SIZE 0
> 250-8BITMIME
> 250-DSN
> 250-ETRN
> 250 EXPN
> auth login
> 334 VXNlcm5hbWU6

The only way to disable this is at the firewall level.

Remember,  I  never  questioned  that  you  are  getting sc***ed by an
overzealous  blacklist.  Just  keeping  you fully informed about other
threats.

-Sandy


Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

An Archive of this list is available at:
http://www.mail-archive.com/imail_forum%40list.ipswitch.com/

Please visit the Knowledge Base for answers to frequently asked
questions:  http://www.ipswitch.com/support/IMail/

Reply via email to