Hi,
At 18:19 11.2.2001 -0500, Kari Suomela wrote:
>I am still having a problem getting selective relaying to work. Here is
>my smtp file:
>
>service smtp
>{
> disable = no
> socket_type = stream
> protocol = tcp
> wait = no
> user = qmaild
> server = /var/qmail/bin/tcp-env
> server_args = /var/qmail/bin/qmail-smtpd
> env = RELAYCLIENT=
>}
>
Acutally, this is not your SMTP file rather the section "SMTP" in
/etc/xinetd.conf.
>The problem is that this creates a wide open relay. "only_from" doesn't
>seem the right alternative, since it blocks incoming mail from other
>addresses.
Sure ist does in your configuration. Unlike TCPSERVER, XINETD doesnt give
you the possibility to dynamically assign IP-Addresses to the
Environment-Variable "RELAYCLIENT".
>How would I properly allow relaying from our local net, and block
>others?
3 possible solutions:
1. Provide those IP-Adresses (to allow relay for) statically by XINETD
mechanisms (man xinetd.conf).
2. Keep your xinetd.conf settings (except for the RELAYCLIENT variable and
use Chris Johnson's RELAYCLIENT patch or my SPAMCONTROL patch.
3. Use XINETD for all Services/Daemons EXCEPT SMTP. Move to tcpserver instead.
Coexisting of XINETD and TCPSERVER is guarantueed.
For more detail see my QMAIL web page:
http://www.fehcom.de/qmail_en.html
>
cheers.
eh.
> KS
>
> ÉÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍ»
> º KARICO Business Services º
> º Toronto, ON Canada http://www.ksbase.com º
> ÈÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍͼ
>
>... Postmen never die, they just lose their zip.
>
>
+-----------------------------------------------------------------------+
| fff hh http://www.fehcom.de Dr. Erwin Hoffmann |
| ff hh |
| ff eee hhhh ccc ooo mm mm mm Wiener Weg 8 |
| fff ee ee hh hh cc oo oo mmm mm mm 50858 Koeln |
| ff ee eee hh hh cc oo oo mm mm mm |
| ff eee hh hh cc oo oo mm mm mm Tel 0221 484 4923 |
| ff eeee hh hh ccc ooo mm mm mm Fax 0221 484 4924 |
+-----------------------------------------------------------------------+