Potential relay hole? Portions redacted, can anyone with 2006.23
reproduce?

 

I have found that I can send an email to users of the same domain on the
server without authenticating. My client is NOT setup to use smtp
authentication. The smtp options on the server are set to No Mail Relay.
If I do try to relay to other domain it gives me a 550 

Here are the headers and log snippets: 

20080915 233643 127.0.0.1       SMTPD (a432015500000012) [67.218.xx.xx]
connect 66.23.240.18 port 52201

20080915 233643 127.0.0.1       SMTPD (a432015500000012) [66.23.240.18]
HELO markg01

20080915 233643 127.0.0.1       SMTPD (a432015500000012) [66.23.240.18]
MAIL FROM: <[EMAIL PROTECTED]>

20080915 233643 127.0.0.1       SMTPD (a432015500000012) [66.23.240.18]
RCPT TO: <[EMAIL PROTECTED]>

20080915 233643 127.0.0.1       SMTP (0000000000000000) Info - Adding
Queue file E:\imail\spool\Qa432015500000012.SMD

20080915 233643 127.0.0.1       SMTP (a432015500000012) processing
E:\imail\spool\Qa432015500000012.SMD

20080915 233643 127.0.0.1       SMTP (a432015500000012) sender
<[EMAIL PROTECTED]>

20080915 233643 127.0.0.1       SMTP (a432015500000012) recip is
<[EMAIL PROTECTED]>

20080915 233643 127.0.0.1       SMTP (a432015500000012) local user
[EMAIL PROTECTED]

20080915 233643 127.0.0.1       SMTP (a432015500000012) closed
E:\imail\spool\_a432015500000012.~MD - 1

20080915 233643 10.23.194.18    SMTP (a432015500000012) [Att-Blk] Got
Attachment Blocking Host Info for xxx

20080915 233643 127.0.0.1       SMTP (a432015500000012) [x] xxx
ldelivery AlwaysOn (main) from <[EMAIL PROTECTED]>

20080915 233643 127.0.0.1       SMTP (a432015500000012) ldeliver xxx
AlwaysOn-main (1) [EMAIL PROTECTED]> 1479

20080915 233643 127.0.0.1       SMTP (a432015500000012) finished
E:\imail\spool\Qa432015500000012.SMD status=1

 

>From <[EMAIL PROTECTED]> Mon Sep 15 23:36:43 2008

Received: from markg01 [66.23.240.18] by xxx

  (SMTPD-9.23) id A4330258; Mon, 15 Sep 2008 23:36:43 +0530

Message-ID: <[EMAIL PROTECTED]>

From: "Mark Gordon" <[EMAIL PROTECTED]>

To: <[EMAIL PROTECTED]>

Subject: [EMAIL PROTECTED]

Date: Mon, 15 Sep 2008 14:07:36 -0400

MIME-Version: 1.0

Content-Type: multipart/alternative;

                boundary="----=_NextPart_000_0017_01C9173C.682399D0"

X-Priority: 3

X-MSMail-Priority: Normal

X-Mailer: Microsoft Outlook Express 6.00.2900.5512

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.5579

X-IMAIL-SPAM-VALHELO: (a432015500000012)

X-RCPT-TO: <[EMAIL PROTECTED]>

Status: `

X-UIDL: 516742641

X-IMail-ThreadID: a432015500000012

 

This is a multi-part message in MIME format.

 

------=_NextPart_000_0017_01C9173C.682399D0

Content-Type: text/plain;

                charset="iso-8859-1"

Content-Transfer-Encoding: quoted-printable

 

[EMAIL PROTECTED]

------=_NextPart_000_0017_01C9173C.682399D0

Content-Type: text/html;

                charset="iso-8859-1"

Content-Transfer-Encoding: quoted-printable

 

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">

<HTML><HEAD>

<META http-equiv=3DContent-Type content=3D"text/html; =

charset=3Diso-8859-1">

<META content=3D"MSHTML 6.00.2900.5626" name=3DGENERATOR>

<STYLE></STYLE>

</HEAD>

<BODY bgColor=3D#ffffff>

<DIV><FONT face=3DArial size=3D2><A=20

href=3D"mailto:[EMAIL PROTECTED]">[EMAIL PROTECTED]</A></=

FONT></DIV></BODY></HTML>

 

------=_NextPart_000_0017_01C9173C.682399D0--

 

Thanks
Mark

Reply via email to