邮件服务器-邮件系统-邮件技术论坛(BBS)

标题: Exchange2000(sp3)在默认设置下存在open relay? [打印本页]

作者: wyl_xp    时间: 2006-4-7 11:05
标题: Exchange2000(sp3)在默认设置下存在open relay?
最近被IDC通知公司邮件服务器存在open relay,具体构架如下: win2000ADV+exchang2000(sp3)+scanmail,通过防火墙映射端口发布SMTP,POP3端口,Smtp的access连接按默认,按常理来说应该是没有open realy,但事实上测试如下: <br>
<br>第8个测试在没有认证的情况中继了,手工测试第6个竟然也是成功中继了.<br>
现在公司分布于全国,不可能关掉SMTP,也需要接收外部邮件,现在又不能购买防垃圾网关,请问各们大侠,如何短期内有办法修正open relay的问题? 谢谢啦.<br>
<br>
<br>
Mail relay testing <br>
<br>
Connecting to xxx.xxx.xxx.xxx for anonymous test ... <br>
<br>
<<< 220 email.sample.com sample Mail Server Thu, 6 Apr 2006 17:12:23 +0800 <br>
>>> HELO www.abuse.net<br>
<<< 250 email.sample.com Hello [208.31.42.77]<br>
<br>
Relay test 1<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest@abuse.net><br>
<<< 250 2.1.0 spamtest@abuse.net....Sender OK<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 5.7.1 Unable to relay for securitytest@abuse.net<br>
<br>
Relay test 2<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest><br>
<<< 250 2.1.0 spamtest@sample.com....Sender OK<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 5.7.1 Unable to relay for securitytest@abuse.net<br>
<br>
Relay test 3<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<><br>
<<< 250 2.1.0 <>....Sender OK<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 5.7.1 Unable to relay for securitytest@abuse.net<br>
<br>
Relay test 4<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest@[xxx.xxx.xxx.xxx]><br>
<<< 250 2.1.0 spamtest@[xxx.xxx.xxx.xxx]....Sender OK<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 5.7.1 Unable to relay for securitytest@abuse.net<br>
<br>
Relay test 5<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest@><br>
<<< 501 5.5.4 Invalid Address<br>
<br>
Relay test 6<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest@[xxx.xxx.xxx.xxx]><br>
<<< 250 2.1.0 spamtest@[xxx.xxx.xxx.xxx]....Sender OK<br>
>>> RCPT TO:<securitytest%abuse.net@[xxx.xxx.xxx.xxx]><br>
<<< 550 5.7.1 Unable to relay for securitytest%abuse.net@[xxx.xxx.xxx.xxx]<br>
<br>
Relay test 7<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest@[xxx.xxx.xxx.xxx]><br>
<<< 250 2.1.0 spamtest@[xxx.xxx.xxx.xxx]....Sender OK<br>
>>> RCPT TO:<securitytest%abuse.net@><br>
<<< 501 5.5.4 Invalid Address<br>
<br>
Relay test 8<br>
<br>
>>> RSET<br>
<<< 250 2.0.0 Resetting<br>
>>> MAIL FROM:<spamtest@[xxx.xxx.xxx.xxx]><br>
<<< 250 2.1.0 spamtest@[xxx.xxx.xxx.xxx]....Sender OK<br>
>>> RCPT TO:<"securitytest@abuse.net"><br>
<<< 250 2.1.5 "securitytest@abuse.net"@sample.com <br>
<br>
Relay test result<br>
<br>
Hmmn, at first glance, host appeared to accept a message for relay. <br>
<br>
THIS MAY OR MAY NOT MEAN THAT IT'S AN OPEN RELAY<br>
<br>
<img src="../leadbbsfile/UBBicon/em11.GIF" width=20 height=20 align=absmiddle border=0>
作者: wyl_xp    时间: 2006-4-7 12:18
标题: re:其实此问题与这贴子的问题基本相同的....
其实此问题与这贴子的问题基本相同的.<br>
<a target=_blank href=../Announce/Announce.asp?BoardID=35&ID=849>../Announce/Announce.asp?BoardID=35&ID=849</a><br>
<br>
作者: wyl_xp    时间: 2006-4-7 12:19
标题: re:其实此问题与这下面贴子问题基本相同的....
其实此问题与这下面贴子问题基本相同的.<br>
<a target=_blank href=../Announce/Announce.asp?BoardID=35&ID=849>../Announce/Announce.asp?BoardID=35&ID=849</a><br>
<br>
作者: wyl_xp    时间: 2006-4-7 13:31
标题: re:大家试一下用http://www.abu...
大家试一下用<a target=_blank href=http://www.abuse.net/cgi-bin/relaytest>http://www.abuse.net/cgi-bin/relaytest</a>来测一下. 我朋友的Mdaemon测试就没有open relay问题. 下面是测试结果: <br>Mail relay testing <br>
Connecting to friend-test.com for anonymous test ...<br>
<<< 220 friend-test.com MessageSoft SMG ESMTP Service Ready<br>
>>> HELO www.abuse.net<br>
<<< 250 friend-test.com Hello www.abuse.net, pleased to meet you<br>
<br>
<br>
Relay test 1<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@abuse.net><br>
<<< 250 <spamtest@abuse.net>, Sender ok<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 <securitytest@abuse.net>, Recipient unknown<br>
<br>
Relay test 2<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 3<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<><br>
<<< 250 <>, Sender ok<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 <securitytest@abuse.net>, Recipient unknown<br>
<br>
Relay test 4<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 5<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@[xxx.xxx.xxx.xxx]><br>
<<< 250 <spamtest@[xxx.xxx.xxx.xxx]>, Sender ok<br>
>>> RCPT TO:<securitytest@abuse.net><br>
<<< 550 <securitytest@abuse.net>, Recipient unknown<br>
<br>
Relay test 6<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 7<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 8<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 9<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 10<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 11<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 12<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 13<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 14<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 15<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 16<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test 17<br>
>>> RSET<br>
<<< 250 RSET? Well, ok.<br>
>>> MAIL FROM:<spamtest@friend-test.com><br>
<<< 550 <spamtest@friend-test.com>, Sender unknown<br>
<br>
Relay test result<br>
All tests performed, no relays accepted.
作者: khbd2k6    时间: 2006-4-13 13:24
标题: re:2000?还是升级到2003吧。
2000?还是升级到2003吧。
作者: wyl_xp    时间: 2006-4-13 21:59
标题: re:呵呵! 有点落后了呀.没出问题...
呵呵! 有点落后了呀.没出问题,上面一直不让动,就一直没有升级exchange,现在赶紧着这几天升级到exchange2003.
作者: wuhu297    时间: 2007-8-9 13:30
标题: 回复 #6 wyl_xp 的帖子
升级要钱的哟。




欢迎光临 邮件服务器-邮件系统-邮件技术论坛(BBS) (http://5dmail.net/bbs/) Powered by Discuz! X3.2