MESSAGE
DATE | 2007-09-15 |
FROM | Ron Guerin
|
SUBJECT | Re: [NYLXS - HANGOUT] mail systems
|
From owner-hangout-at-mrbrklyn.com Sat Sep 15 01:26:46 2007 Received: from www2.mrbrklyn.com (localhost [127.0.0.1]) by www2.mrbrklyn.com (8.13.1/8.13.1/SuSE Linux 0.7) with ESMTP id l8F5QiBk002341 for ; Sat, 15 Sep 2007 01:26:46 -0400 Received: (from majordomo-at-localhost) by www2.mrbrklyn.com (8.13.1/8.13.1/Submit) id l8F5Qijd002340 for hangout-outgoings; Sat, 15 Sep 2007 01:26:44 -0400 X-Authentication-Warning: www2.mrbrklyn.com: majordomo set sender to owner-hangout-at-nylxs.com using -f Received: from broadway.vnetworx.net (broadway.vnetworx.net [69.31.43.18]) by www2.mrbrklyn.com (8.13.1/8.13.1/SuSE Linux 0.7) with ESMTP id l8F5QfPN002335 for ; Sat, 15 Sep 2007 01:26:43 -0400 Received: (qmail 1150 invoked by uid 89); 15 Sep 2007 05:26:32 -0000 Received: from unknown (HELO ?192.168.1.42?) (74.73.31.218) by broadway.vnetworx.net with SMTP for ; 15 Sep 2007 05:26:32 -0000 Message-ID: <46EB6D05.30106-at-vnetworx.net> Date: Sat, 15 Sep 2007 01:26:29 -0400 From: Ron Guerin User-Agent: Thunderbird 2.0.0.6 (Windows/20070728) MIME-Version: 1.0 To: Ruben Safir CC: hangout-at-mrbrklyn.com Subject: Re: [NYLXS - HANGOUT] mail systems References: <20070914201955.GA28874-at-www2.mrbrklyn.com> <46EB4628.30009-at-vnetworx.net> <20070915033113.GA1051-at-www2.mrbrklyn.com> <46EB557E.8010205-at-vnetworx.net> <20070915051338.GA2132-at-www2.mrbrklyn.com> In-Reply-To: <20070915051338.GA2132-at-www2.mrbrklyn.com> X-Enigmail-Version: 0.95.3 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Sender: owner-hangout-at-mrbrklyn.com Precedence: bulk Content-Length: 1534 Lines: 35 Status: RO X-Status: X-Keywords: X-UID: 4836
Ruben Safir wrote: > On Fri, Sep 14, 2007 at 11:46:06PM -0400, Ron Guerin wrote: > >> Ruben Safir wrote: >> >>> Is it relaying or not? I'm worried that I've had some spam relayed through the system but >>> every relay test I run comes back negative. >>> >>> >> I believe the relay it refers to is the system that passed you the mail, >> as the mail was not locally generated. The question you need to answer >> for yourself is what happened to that message. If it was delivered to >> one of your local users (either final delivery to a mailbox or a >> program, or forwarded out for one of your local users to anywhere else) >> then that message should not concern you. >> >> > > > Yeah that's what's bothering me. Some of the results in mailq seem to tell > me that spams are being being delayed in the outgoing mail and that these mails > are originating from the MAIL-DAMEAN or some such. I believe that they are coming from > the info-at-nylxs.com alias, but I'm not certain and the mail logs are not clearifying this. > > Also, majordomo returns spam messages to the user-at-domain where a request is suposedly > generated from, and that might also be the origin. > > Neither would concern me, but an exploit for relaying would make me really worry. > Mmmm. Well, actually backscatter can get you in trouble too. It's sort of indirect relaying, whereby instead of you "delivering" the spam to the victim, you _bounce it to them_. http://en.wikipedia.org/wiki/Backscatter#Backscatter_of_email_spam
- Ron
|
|