LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 03-20-2005, 10:03 PM   #1
basbosco
Member
 
Registered: Nov 2003
Posts: 33

Rep: Reputation: 15
Maillog unwanted relay


Hi,

I have installed redhat 9.0 linux box with sendmail 8.12.9. I have frequently getting relaying denied in the maillog.

The logs given below:
*************************
Mar 21 08:53:45 bics sendmail[18276]: j2L3MZms018276: ruleset=check_rcpt, arg1=<4ieh123n@yahoo.com.tw>, relay=[166.114.30.40], reject=550 5.7.1 <4ieh123n@yahoo.com.tw>... Relaying denied. IP name lookup failed [166.114.30.40]
Mar 21 08:53:45 bics sendmail[18277]: j2L3Mfmq018277: ruleset=check_rcpt, arg1=<6041a@ms4.hinet.net>, relay=[166.114.30.40], reject=550 5.7.1 <6041a@ms4.hinet.net>... Relaying denied. IP name lookup failed [166.114.30.40]

1. I want to know whether my sendmail server is a open relay or not.

2. How to restrict the relaying denied error..?


Hope i will get the solution thanks...

Regards
Baskar T
 
Old 03-20-2005, 10:52 PM   #2
btmiller
Senior Member
 
Registered: May 2004
Location: In the DC 'burbs
Distribution: Arch, Scientific Linux, Debian, Ubuntu
Posts: 4,290

Rep: Reputation: 378Reputation: 378Reputation: 378Reputation: 378
Looks like someone may be trying to use your box as an open relay, but the fact that it is being denied is a good sign. You should check your /etc/mail/access file. IIRC by defauly the sendmail shipped with RH9 will only route mail to/from the localhost and for domains specified in the access database (you'll need to rebuild access.db via makemap if you modify this file). You can also test your mail server by telnetting to port 25 and attempting to send mail from some random domain not serviced by your mail server to another random domain not serviced by your mail server.

Finally, if you're running RH9 in a server capacity, please make sure you have all relevant updates from red Hat and the Fedora legacy project installed.
 
Old 11-22-2005, 05:10 AM   #3
basbosco
Member
 
Registered: Nov 2003
Posts: 33

Original Poster
Rep: Reputation: 15
how to drop the ip

Hi btmiller,

Thanks for ur reply.

I have few doubts..


1. I would like to avoid those errors in the maillog. How to do?
2. Is there any method to restrict open relay in sendmail.


thanks in advance.

Regards
Baskar ST
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Postfix as a mail relay (getting relay access denied) hypexr Linux - Software 3 09-13-2005 07:15 PM
relay mail to sendmail relay server??? lemay_jeff Linux - Newbie 0 07-06-2004 04:54 PM
Maillog entries lapthorn Linux - Newbie 0 12-04-2003 10:18 AM
postfix maillog help.. hct224 Linux - Newbie 3 11-28-2003 03:50 PM
maillog is getting too big!!! weird_guy Linux - Software 3 11-12-2003 05:14 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:36 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration