nanog mailing list archives

Re: ingress SMTP


From: Tony Finch <dot () dotat at>
Date: Wed, 3 Sep 2008 19:06:28 +0100

On Wed, 3 Sep 2008, Alec Berry wrote:

At the very least, you can run stunnel to allow incoming
mail submission on port 465 (SMTP + SSL).

I would be very very careful with that kind of setup. Connections to port
25 from localhost (even if they are from stunnel running on localhost)
often bypass most or all of the MTA's security checks.

Tony.
-- 
f.anthony.n.finch  <dot () dotat at>  http://dotat.at/
FAIR ISLE: CYCLONIC 4 OR 5, BUT 6 OR 7 IN NORTHWEST. MODERATE OR ROUGH.
SHOWERS. MODERATE OR GOOD.


Current thread: