• RSS
  • Twitter
  • FaceBook

Exchange Server Forums

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Exchange 2010 relay issue

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [Microsoft Exchange 2010] >> General >> Exchange 2010 relay issue Page: [1]
Login
Message << Older Topic   Newer Topic >>
Exchange 2010 relay issue - 20.Jan.2010 6:57:42 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
Hello

I have a relay issue, i have 3 receive connectors configured, the two defaults connectors and a 3rd configured using the "INTERNET" template, now if i telnet on 25 to my ip or hostname and do mail from: xyz@xyz.com rcpt to: abc@abx.com i get unable to relay, so that works fine, now i have 1 accepted domain called trutecsolutions.com, and a user called john doe, wit h an email address of john.doe@trutecsolutions.com, if i telnet on 25 to ip or host name and do mail from: 123@123.com rcpt to: john.doe@trutecsolutions.com, then the message get delivered, what going on, and if i always do the same command but using mail from as administrator@trutecsolutions.com and rcpt to john.doe@trutecsolutions.com then john doe get an email from administrator, please help me, i am using the the recive connector with "internet" template

Many thanks

Nick
Post #: 1
RE: Exchange 2010 relay issue - 20.Jan.2010 7:17:42 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
I'm not seeing a problem right now.
You have an accepted domain. You send a message to the accepted domain using a random sending address. The mail gets delivered.
The relay messages you got is good. You would have had to do something unbelievably dumb to turn 2010 into an open relay - it's not just a click, click like it was 10 years ago.

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 2
RE: Exchange 2010 relay issue - 20.Jan.2010 7:23:11 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
please could you test for me, telnet mail.trutecsolutions.com

mail from: what ever you choose
rcpt to: nick@trutecsolutions.com

the recive connector has ben set up as internet connector with internet template i have not change any thing on this connector and have not edited via power shell i.e extended rights

Many Thanks


(in reply to mark@mvps.org)
Post #: 3
RE: Exchange 2010 relay issue - 20.Jan.2010 7:40:40 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
Yeah? It accepts trutecsolutions.com and doesn't accept mails to foo.com.
Err, yeah. If you're trutecsolutions, what's your problem. Not seeing it.

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 4
RE: Exchange 2010 relay issue - 20.Jan.2010 7:45:01 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
thank you mark
maybe i am missing some thing,  if i telnet to mail.trutecsolutions.com 25

mail from:xyz@xyz.com
rcpt to: abc@abc.com
it dose not relay,

if i do mail from:xyz@xyz.com
rctp to:nick@trutecsolutions.com

i get an email, is this correct i am telneting from a machine that has nothing to do with the exchange server in question

Many thanks

(in reply to mark@mvps.org)
Post #: 5
RE: Exchange 2010 relay issue - 20.Jan.2010 7:48:12 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
That's perfect. Exchange doesn't check (by default) that the IP you are coming from is associated with xyz.com and since you 'own' trutec it's accepting the message. Again, by default Exchange will accept anything@yourdomain but you can tweak that so that if there isn't a nick@ but there is a nick.spender@ it will refuse the nick@ but accept the other one.
Unless you're explaining badly or I'm not seeing it (it's early!) there's not a problem.

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 6
RE: Exchange 2010 relay issue - 20.Jan.2010 8:46:18 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
right ok,,

but let say you no my ost name which you do, lets say you no my email address which you do, and lets say you no my bosses email address you could use telnet to spoof an email from me to him, so surely that is a type of relay,, can u telnet to mailtrutecsolutions.com and send me an email nick@trutecsolutions.com from xyx@xyx.com and see if i get the email

thaanks for all your help,

(in reply to nick.spender)
Post #: 7
RE: Exchange 2010 relay issue - 20.Jan.2010 8:53:37 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
Right. So that's nothing to do with relay. You were just using the wrong word. IIRC you telnet and do a message 'from' your boss and 'to' joe in the mail room telling him that he's fired your joe will get the message but it will be from the SMTP address rather than the NAME of the boss.
Now, there is a tweak you can do that refuses to accept messages that have a sender of your domain. Essentially you can block messages FROM your selves.

I can't put my hands on the thing you want right now but I'll see if I can dig it out later.

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 8
RE: Exchange 2010 relay issue - 20.Jan.2010 9:22:00 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
so my recive connector is not open, if i enable anti agent on the hub server, would this mark the email as spam and not deilver it

Thank you one again

(in reply to mark@mvps.org)
Post #: 9
RE: Exchange 2010 relay issue - 20.Jan.2010 9:28:18 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
Correct.

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 10
RE: Exchange 2010 relay issue - 20.Jan.2010 9:31:45 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
just out of intrest why dose it do it, because that could cause some real issues

(in reply to mark@mvps.org)
Post #: 11
RE: Exchange 2010 relay issue - 20.Jan.2010 10:12:02 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
Because that's the way SMTP works. If you want to restrict it you are free to do so but Exchange obeys the RFCs and the behaviour is by design. You'd be the first to jump all over Microsoft if they did (yet another) thing that didn't conform out of the box to the 'rules'.

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 12
RE: Exchange 2010 relay issue - 20.Jan.2010 10:26:34 AM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
so if i configure edge or anti spam on the hub server ten these emails will be picked up as spam and get block, am i right in saying this

Many Thanks


(in reply to mark@mvps.org)
Post #: 13
RE: Exchange 2010 relay issue - 20.Jan.2010 11:16:58 AM   
mark@mvps.org

 

Posts: 6812
Joined: 9.Jun.2004
From: Philadelphia PA
Status: offline
Depends.
Depends on what your rules are. I don't know what you use. I don't know how you've got it configured (or intend to have).
Bottom line. If you want to block your own domain name being in the "mail from" block that's all you have to configure. 99.9999999999999999% of people don't bother as the only people who "send as you" (to you) are also picked up as spam. They are ALSO picked up as spam; not BECAUSE they sent "as you"

_____________________________

Mark Arnold (Exchange MVP)
List Moderator

(in reply to nick.spender)
Post #: 14
RE: Exchange 2010 relay issue - 20.Jan.2010 1:55:48 PM   
nick.spender

 

Posts: 13
Joined: 20.Jan.2010
Status: offline
well currently i dont have any anti spam in place , so i am either going to setup an edge server or enable anti spam on the hub server, so the bottom line is if a random person in lets says the USA telnets into mail.trutecsolutions.com and uses a vaild mailfrom and/or rcpt to,then the mails will be sumitted for delivery, ie

mail from: abc@abc.com
rcpt to:nick@trutecsolutions.com

or

mail from: administrator@trutecsolutions.com
rcpt to:nick@trutecsolutions.com

so this is all normal untill anti spam is setup

thank you so much for being so patient

(in reply to nick.spender)
Post #: 15

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [Microsoft Exchange 2010] >> General >> Exchange 2010 relay issue Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts


Follow TechGenix on Twitter