On Tuesday, May 4, 2004, 21:43:33, Jeffrey T Blank wrote:
>  ...
> Our mailserver is hosted behind our netscreen NAT (PAT actually) our
> clients connect by going to the outside mapped ip of the mailserver.
>
> It seems as though the smtp server saw these connections comming from
> the nat (Many to One) as a hack attempt, turning off the "auto-deny
> possible hack attempts" fixed the problem.

By  definition  an MTA publicized by an MX record is going to have 'Many
to  One'  connections.  It  doesn't  matter  if  'the  One'  is  address
translated.

The  "auto-deny  possible  hack attempts" supposedly checks if more than
512  characters  are  sent during anything but the SMTP DATA command. Do
you  have  any kind of firewall proxy that might be screwing around with
the headers?

> Nothing was every logged.

Auto-denied hack attempts are supposed to be reported in the log file.

-- 
[EMAIL PROTECTED]     "The avalanche has already started, it is too
Rod Dorman              late for the pebbles to vote." � Ambassador Kosh


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to