[EMAIL PROTECTED] wrote:
All,
We block port 25 at the firewall so all outgoing mail has to go out our gateway.
(snip)
Obviously we have to allow SMTP for internal legit clients on our network. Is SMTP AUTH the answer?
YES
Write a terms-of-use that all users have to sign before they get an email address Require SMTP AUTH Log all outgoing traffic
Then when you catch someone sending spam you know which account to disable.
I agree. YES to either mechanism.
I would also let them read snippets of the CAN-SPAM and any local state Anti-SPAM laws that apply. In Illinois alone (where I am) I think the $25,000 per day and $10/email will catch their attention. Make sure they know THEY will be liable.
-Ben _______________________________________________ Visit http://www.mimedefang.org and http://www.canit.ca MIMEDefang mailing list [email protected] http://lists.roaringpenguin.com/mailman/listinfo/mimedefang

