Hello Gurus,

i have a lot of entries in our logfile like this:

SMTP-020(lists.apple.com) Sending 250-mail.saase.de is pleased to meet
you\r\n250-HELP\r\n250-PIPELINING\r\n250-ETRN\r\n250-AUTH=LOGIN\r\n250-AUTH
LOGIN PLAIN CRAM-MD5 DIGEST-MD5\r\n250 EHLO\r\n

especially this snippet:
250-AUTH LOGIN PLAIN CRAM-MD5 DIGEST-MD5\r\n

What are the strings CRAM-MD5 and DIGEST-MD5 ?

and what is this:
00:24:25 4 SMTP-359(someserver) Input Line: AUTH DIGEST-MD5\r

does it mean someone with the password DIGEST-MD5 tries to send emails?

Thanks very much for your answer. I am trying to track down a
misconfiguration or a spoofing.

Lydia



#############################################################
This message is sent to you because you are subscribed to
  the mailing list <[EMAIL PROTECTED]>.
To unsubscribe, E-mail to: <[EMAIL PROTECTED]>
To switch to the DIGEST mode, E-mail to <[EMAIL PROTECTED]>
To switch to the INDEX mode, E-mail to <[EMAIL PROTECTED]>
Send administrative queries to  <[EMAIL PROTECTED]>

Reply via email to