LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 04-25-2006, 11:19 AM   #1
dlublink
Member
 
Registered: Oct 2004
Location: Canada
Distribution: Ubuntu
Posts: 330

Rep: Reputation: 30
Open Mail Relay without spam.


All,

Finally after two years of moving my website and email accounts from server to server I got a stable server that is pretty powerful. I think the most frustrating thing for me during those two years was not having a backup MX server. If my primary failed, then people would either have mail bounced or delivered much later.

I was thinking of setting up an open relay for anyone to use. Basically what I would do is set a limit of maybe 100 emails per day per domain. This would ensure that it's only being used for personal use and not professional use.

Obviously putting an open relay on the internet is a pretty bad idea because of all the spam that goes around. As much as I am sure you all want Viagra, Cialis to augment your body parts, I am guessing you don't want that in your email.

This is what I thought of doing, when a mail is recieved by the server for an unknown domain, I would do a DNS lookup and if my server appears in the MX records of the domain, it would queue and deliver the mail when the primary server became available.

I figure if a user can compromise the DNS of a particular domain, they probably will do something other than using my machine as a spam relay.

I have given this some thought and figure it would work pretty well.

What does everyone else think? Is this secure enough of a way to be an open email relay? Is there enough legitimate users out there would be prepared to use the service for free?

Lastly, if this method works is there any software that has been written that would do the above mentioned tasks, or would I have to build a plugin for my postfix installation?

What do you think?

David
 
Old 04-25-2006, 11:43 AM   #2
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
Open relay.. sure it'll be on the black lists so fast that I probably won't receive anything from it.

Backup mx server ? I used to have my ISP providing one of those.. but you know what ? it was more of a back door for spam than a useful item. since I wasn't hosting the backup system it had no checks in place and would accept mail from anyone anywhere to anyuser@mydomainc.com, then forward all that crap to my main mail server when it came back up which had the secondary mx whitelisted..

Spammers love secondary MX's because they KNOW this happens to people, They intentionally will send their spam to the secondary MX instead of the primary. For some reason SBC did this too, we spent some time trying to figure out why all emails from SBC were delayed a couple hours.. turns out it was a misconfiguration on their side to send to secondary MX first.. not too bright imho

I have spoken with several other mail admins that had this same problem. the resolution ? Dump the secondary MX and allow the mail system to handle outages the way it was designed. If you can't reach destination, wait, retry, if delay is too long (typically a couple days) bounce email.

My users recieve considerably LESS spam now that everything that comes in is filtered, blacklisted, rDNS queried, etc.. etc.. etc.. It's nice to be spam free again.


I'd advise against the secondary mx unless you can implement it properly (user lookup and filtering) and the Open relay idea is even worse imho. If you are going to do it, please email me the IP of your servr so I can put it directly into my local blacklist before you start..

Thanks.

Last edited by farslayer; 04-25-2006 at 11:45 AM.
 
Old 04-25-2006, 11:46 AM   #3
dlublink
Member
 
Registered: Oct 2004
Location: Canada
Distribution: Ubuntu
Posts: 330

Original Poster
Rep: Reputation: 30
Ok.

Forget it.

You know, I have had my domain for two and a half years. I have never run *any* spam protection of any type and I have yet to recieve any spam...

I suppose I don't look at spam like everyone else. Spam for me is something that is "out there" and may one day come to me. But not as of yet...

David
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Spam, PostFix, OPen Relay question linchat Linux - Software 1 09-15-2005 03:22 PM
Postfix as a mail relay (getting relay access denied) hypexr Linux - Software 3 09-13-2005 07:15 PM
is my mail server open to relay??? luca2005 Linux - Security 5 12-30-2004 08:27 PM
relay mail to sendmail relay server??? lemay_jeff Linux - Newbie 0 07-06-2004 04:54 PM
Anti Spam Software for a Send Mail Relay thecrab Linux - Software 1 08-06-2003 09:19 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 12:58 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration