LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 12-02-2014, 04:13 AM   #1
TiNik
LQ Newbie
 
Registered: Feb 2011
Posts: 7

Rep: Reputation: 0
Postfix protection against authenticated spam bots


I run postfix as a mail server and once upon a time one of email accounts is "hacked" and spam bots can login through that account and send spams.

Permit_sasl_authenticated is the second rule of recipient restriction, so after SASL authentication the user is allowed to send mails everywhere.

Code:
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination, ....
Is there some way how to stop the bot from sending mails or at least limit it till I ask the mail owner to change his password ??
 
Old 12-02-2014, 01:04 PM   #2
linosaurusroot
Member
 
Registered: Oct 2012
Distribution: OpenSuSE,RHEL,Fedora,OpenBSD
Posts: 982
Blog Entries: 2

Rep: Reputation: 244Reputation: 244Reputation: 244
Spammers typically send to a lot of broken addresses - meaning they can be detected by the large number of bounces and delayed mails than are seen with normal users (aside from the volume which might be legitimately high for a mailing list).

I don't know the best way to act on that but a log reader that cancelled the authentication of the sender doesn't sound hard in principle.
 
Old 12-02-2014, 01:34 PM   #3
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
If it were me, I'd change that compromised mail account password in a heartbeat.
I wouldn't want my mail server to get blacklisted.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
spam bots Bruce Hill LQ Suggestions & Feedback 13 03-24-2008 07:13 AM
Can Pidgin Block Spam Bots? BillyGalbreath Linux - Software 3 11-10-2007 06:34 PM
Wanted: Spam filter to bounce authenticated mail to authenticated address Wassercrats Linux - Software 4 11-08-2007 07:56 PM
Anti-spam bots! Lord Ghost Linux - Security 6 05-15-2007 06:02 PM
Spam bots picking up e-mail addresses from HTML code? R00ts General 4 07-25-2004 04:24 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 09:38 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration