I narrowly restricted relaying in SIMS to range of approx 12 allowed IP addresses. 63.229.147.125 is NOT in the range of allowed addresses. But, it is the mail server address. spamtest is NOT a user on our system. Verify return paths IS checked.
Yet the following got through: >>> MAIL FROM:<spamtest@[63.229.147.125]> <<< 250 <spamtest@[63.229.147.125]> sender accepted >>> RCPT TO:<@plato.buffalobulletin.com:[EMAIL PROTECTED]> <<< 250 <@plato.buffalobulletin.com:[EMAIL PROTECTED]> will relay >>> DATA <<< 354 Enter mail, end with "." on a line by itself >>> (message body) <<< 250 S.0000016153 message accepted for delivery /proj/maps/rss/bin/rly: relay accepted - final response code 250 >From [63.229.147.125]!spamtest Tue Oct 8 00:33:58 2002 Return-Path: <spamtest@[63.229.147.125]> Received: from buffalobulletin.com(really [63.229.147.125]) by rdaver.bungi.com via sendmail with esmtp id <[EMAIL PROTECTED]> for <[EMAIL PROTECTED]>; Tue, 8 Oct 2002 00:33:48 -0700 (PDT) (Smail-3.2.0.94 1997-Apr-22 #237 built 2002-Jun-12) Received: from cygnus.mail-abuse.org ([204.152.187.123] verified) by buffalobulletin.com (Stalker SMTP Server 1.7) with SMTP id S.0000016153 for <@plato.buffalobulletin.com:[EMAIL PROTECTED]>; Tue, 08 Oct 2002 01:33:18 -0600 From: spamtest@[63.229.147.125] To: [EMAIL PROTECTED] Subject: test for susceptibility to third-party mail relay Message-Id: <[EMAIL PROTECTED]> Sender: [EMAIL PROTECTED] X-Envelope: <spamtest@[63.229.147.125]> -> <@plato.buffalobulletin.com:[EMAIL PROTECTED]> Date: Tue, 08 Oct 2002 01:33:18 -0600 HELP!!! mark ############################################################# This message is sent to you because you are subscribed to the mailing list <[EMAIL PROTECTED]>. To unsubscribe, E-mail to: <[EMAIL PROTECTED]> To switch to the DIGEST mode, E-mail to <[EMAIL PROTECTED]> To switch to the INDEX mode, E-mail to <[EMAIL PROTECTED]> Send administrative queries to <[EMAIL PROTECTED]>
