nanog mailing list archives
Re: open relays at Earthlink
From: Dalvenjah FoxFire <dalvenjah () dal net>
Date: Fri, 21 Aug 1998 12:08:57 -0700
On Fri, Aug 21, 1998 at 01:42:47PM -0500, Aaron Goldblatt put this into my mailbox:
Imposing security measures or performance enhancement tricks after initial implementation is a huge imposition on any company's technical support staff, and frequently serves more as a customer irritant than anything else. I remember having to assist flash.net customers with reconfigurating their POP3 and SMTP clients when that provider went to a round-robin load-balancing mail server system. It was ... painful.
"Well this is how we've always done it" isn't an excuse for sticking with a boneheaded configuration. Yes, changing configurations is painful. Yes, customers will bitch and whine and wail "But I'm not a computer person!" Yes, support staff will have to walk customers through reconfiguring their Endora and explaining why they need this STMP thing anyway. I've been doing it all summer at work. One extremely simple fix that the UUnet folks appear not to have stumbled upon is to firewall outgoing connections on port 25 to any hosts other than a specific list of earthlink, MSN, &etc mail hosts. This would only require reconfiguration on the part of the particularly obstinate customers who didn't follow the directions properly in the first place, and would for the most part kill off the relay hijacking that goes on from those networks. Last - all these companies don't seem to understand that implementing these fixes and dealing with the complaints in the short run will let them cut down their abuse staff in the long run, because they won't have 500,000 e-mails to deal with every day. It's cheaper to fix it right, folks. But this is getting to be off-topic, so I'll stop here. I'd suggest taking it to inet-access or somesuch, but I'm not on those lists and don't know what's appropriate for them. -dalvenjah -- Dalvenjah FoxFire (aka Sven Nielsen) "And I would've gotten away with it, if Founder, the DALnet IRC Network it hadn't been for you meddling kids!" e-mail: dalvenjah () dal net WWW: http://www.dal.net/~dalvenjah/ whois: SN90 Try DALnet! http://www.dal.net/
Current thread:
- open relays at Earthlink Adam D. McKenna (Aug 17)
- Re: open relays at Earthlink Sam Hayes Merritt, III (Aug 17)
- Re: open relays at Earthlink EarthLink Information Security (Aug 19)
- Re: open relays at Earthlink Wayne (Aug 19)
- Re: open relays at Earthlink Roy (Aug 20)
- Re: open relays at Earthlink Steven J. Sobol (Aug 21)
- Re: open relays at Earthlink Aaron Goldblatt (Aug 21)
- Re: open relays at Earthlink Dalvenjah FoxFire (Aug 21)
- Re: open relays at Earthlink Aaron Goldblatt (Aug 24)
- Re: open relays at Earthlink Brandon Ross (Aug 24)
- Re: open relays at Earthlink Derek Balling (Aug 25)
- Re: open relays at Earthlink J.D. Falk (Aug 26)
- Re: open relays at Earthlink John Butler (Aug 26)
- Re: open relays at Earthlink Christopher Masto (Aug 27)
- Re: open relays at Earthlink Wayne (Aug 19)
- Re: open relays at Earthlink Steve Davies (Aug 25)
- Re: open relays at Earthlink Edward S. Marshall (Aug 25)
- Re: open relays at Earthlink Steven J. Sobol (Aug 25)
- Re: open relays at Earthlink Phil Howard (Aug 26)