Educause Security Discussion mailing list archives

Re: Port 25 blocks


From: Justin Azoff <JAzoff () UAMAIL ALBANY EDU>
Date: Wed, 12 Jan 2005 16:24:10 -0500

On Wed, 2005-01-12 at 15:01 -0600, Jim Barlow wrote:
The problem with this is that there are a number of people who have
machines (laptops primarily) configured to do SMTP with their home cable
modem/DSL company.  They don't want to have to have two configurations
to deal with (one for work, one for home) and we would like to come up
with a solution that would affect the least amount of people.  We could
have them use our SMTP servers all the time, but they are then required
to POP before SMTP in order for our email servers to relay mail from
an outside IP (just FYI, we do require non-cleartext POP auths :-).
This will work for some, but there are other cases where it won't.
Another possible solution would be for the routers to re-write headers for
anything outbound to port 25 to send it through the mail server.  However,
I don't know if this has been done, or currently is being done anywhere.

So we are wondering if anyone else currently blocks port 25 outbound
and what they did to solve some of these problems.

Thanks in advance.


Most organizations use mail.domain.com or smtp.domain.com as their mail
servers... Usually you can just tell the email client to use 'mail' as
the outgoing mail server, instead of mail.domain.com.  The search domain
will get filled in from DHCP and things should "just work" :-)

--
-- Justin Azoff
-- Network Performance Analyst

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/groups/.

Current thread: