#418511 postfix: Postfix is an Open Relay with setup defaults on ALL IP

Package:
postfix
Source:
postfix
Description:
High-performance mail transport agent
Submitter:
tom schorpp
Date:
2010-07-15 17:42:05 UTC
Severity:
minor
#418511#5
Date:
2007-04-10 08:41:26 UTC
From:
To:
main.cf documentation should state clearly that
mynetworks_style = subnet
relays open for ALL IP pool providers,
not only for classic ppp "dialup" providers.

documentation could be misleading here on fast reading and it
is unconditional for spammers to use my cable provider
since he assigns mostly static addresses and reserves
them par DHCP, so yesterday I was subject to a coordinated
unexpected spam gang attack using access to "my" subnet and
getting relay access for a short time.

But I'll take that blamage, sorry for any damage.

y
tom

#418511#10
Date:
2007-04-10 12:42:33 UTC
From:
To:
forwarded 418511 wietse@porcupine.org
--

This is precisely why the debian install sets mynetworks=127.0.0.0/8.
(mynetworks_style is newer.)  If you can't trust your neighbors, then
you want to have a more restrictive mynetworks_style.

Forwarded upstream.

lamont

#418511#17
Date:
2010-07-15 17:15:56 UTC
From:
To:
sorry, but i fail to understand what you want to say by
"relays open for ALL IP pool providers,"

is this "issue" still pending or has it been resolved upstream?

for example, i see an update to main.cf in
http://git.debian.org/?p=users/lamont/postfix.git;a=commitdiff;h=c6e2f813#patch22

cheers,
raoul