Linux Netfilter discussions
 help / color / mirror / Atom feed
* SMTP Routing Based On Recipient
@ 2003-12-22 19:28 Adam Ellis
  2003-12-22 19:39 ` Antony Stone
                   ` (2 more replies)
  0 siblings, 3 replies; 9+ messages in thread
From: Adam Ellis @ 2003-12-22 19:28 UTC (permalink / raw)
  To: netfilter

[-- Attachment #1: Type: text/plain, Size: 835 bytes --]

I am running a MS Exchange 5.5 server and am getting hit with the NDR
(non-delivery report) Reverse Spam Attack as described here:
 
http://www.tek-tips.com/gviewthread.cfm/lev2/3/lev3/15/pid/10/qid/725829

As the thread describes, there is no way to just turn off NDRs in
Exchange 5.5 - Microsoft is recommending third party utilities.  What I
am wondering is this - would it be possible to redirect SMTP to my Linux
server, use iptables to check that the recipient matches a valid user
from a list I'd supply, and, if so, route the message to the Exchange
server?  And, if no valid recipient is found, the message is simply
dropped.  Is this even a logical way to handle this situation?  Should I
be looking at something like snort instead?  I'm all ears!

Thanks,
-- 
Adam Ellis <aellis@saberlogic.com>
SaberLogic

[-- Attachment #2: This is a digitally signed message part --]
[-- Type: application/pgp-signature, Size: 189 bytes --]

^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2003-12-23 21:57 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-12-22 19:28 SMTP Routing Based On Recipient Adam Ellis
2003-12-22 19:39 ` Antony Stone
2003-12-23 11:37 ` Chris Brenton
2003-12-23 13:00   ` Adam Ellis
2003-12-23 13:14     ` Antony Stone
2003-12-23 15:36       ` Michael Gale
2003-12-23 15:52         ` Antony Stone
2003-12-23 19:20       ` Mark E. Donaldson
2003-12-23 21:57 ` gustav gundacker

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox