Page 1 of 1

SMTPD Rejecting Domain Relay

Posted: Fri May 18, 2007 10:51 am
by severian
Hello,

I've configured smtpd.cfg as follows below, but smtpd still doesn't relay from server host.domain.com. Reading the documentation, I was thinking that RELAY Accept .mydomain.com would've been sufficient. Do domain hosts have to authenticate somehow? If so, how do I set that up?

# NB Authenticated RELAYs are always allowed
RELAY Accept 127.0.0.1
RELAY Accept .mydomain.com
RELAY Accept host.domain.com
RELAY Accept 11.111.11.101
RELAY Log_Reject ALL
SUBMIT Log_Reject DNSBL,bl.spamcop.net,ALL
SUBMIT Log_Reject DNSBL,relays.ordb.org,ALL
SUBMIT Log_Reject DNSBL,clb.abuseat.org,ALL
SUBMIT Log_Reject DNSBL,sbl.spamhaus.org,ALL

# extra rules added to prevent open relay usage
RECIPIENT Log_Reject *@*@*
RECIPIENT Log_Reject *%*
RECIPIENT Log_Reject *!*
RECIPIENT Log_Reject *#*@*

Posted: Fri May 18, 2007 11:03 am
by jeffs
Silly question: was SMTPd restarted?

omoff -d0 -w smtpd
omon smtpd

Jeff

Posted: Fri May 18, 2007 11:10 am
by severian
No, not a silly question.. I did do that. The log shows the following:

REPORT SMTP Relay (SMTPD Relay Pr) 05.18.07 10:42:28
[OM.DMON 2172] SMTP: Rejected connection from 11.111.11.101

The server that is sending the emails is a regular Fedora server running sendmail, and all it is doing is emailing reports. I used to have it relay to my Postfix server (pre-Scalix), which it did with no problem.

Posted: Fri May 18, 2007 12:37 pm
by severian
Ok, I removed the DNSBL entries, and now it will relay as long as users are within the domain.

How can I let my Scalix server relay from another sendmail server to recipients outside of the domain?



# NB Authenticated RELAYs are always allowed
RELAY Accept 127.0.0.1
RELAY Accept .mydomain.com
RELAY Accept host.domain.com
RELAY Accept 11.111.11.101
RELAY Log_Reject ALL
#SUBMIT Log_Reject DNSBL,bl.spamcop.net,ALL
#SUBMIT Log_Reject DNSBL,clb.abuseat.org,ALL
S#UBMIT Log_Reject DNSBL,sbl.spamhaus.org,ALL

# extra rules added to prevent open relay usage
RECIPIENT Log_Reject *@*@*
RECIPIENT Log_Reject *%*
RECIPIENT Log_Reject *!*
RECIPIENT Log_Reject *#*@*

Posted: Mon May 21, 2007 4:22 pm
by severian
I'm going to keep my Postfix server and try to set it up as a bridgehead with Scalix, because none of the configurations in the Wiki seem to work for spam or DNSBL.