Hellbore (13.Jun.2003 2:44:00 AM)

Lately our Exchange server has been being hit by LOTS of spammers. It's an Exchange 2000 version 6 server with the latest updates... This is how they are getting around the security:

Say our email domain is and the person they are trying to spam is

They send a message like this:

mail from:
rcpt to: <>

Our stupid server thinks the email is supposed to be for but SOMEHOW it actually gets delivered to ! The % gets turned into a @ or something.

Anyone know how I can stop this from happening? It seems to be a common exploit, because my friend who is running the latest version of Post.Office (a different email server) has the SAME vulnerability on his machine!

brianfrazer (2.Jul.2003 5:44:00 PM)

Sounds like you need to set your relay option to not allow relaying. If you have users that need to send from home through your server then you can allow authenticated users to relay, but you will need to set the security on their off-site machines or they will be denied as well.

Brian

