Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

help!!!!!!

Status
Not open for further replies.

kinalas

Technical User
Dec 18, 2002
51
PH
i got this message from my isp. can u put it in simple terms and what should i do.

i got a win2k server, dsl connection, some win2k clients, 2 dial clients, winroute 4.1, 2 lan cards.

the message goes....

Dear Network Security:

(You are receiving this message because your local IP registry and/or
DNS showed that you are the owner of this IP address, or that you are
the access provider for this IP address. If you are not responsible for
the system at this address, PLEASE FORWARD to the responsible party!)

One of your users (IP 202.138.189.xxx) is running an open proxy server
that is being used to forward untold tens of thousands of junk emails
daily. PLEASE shut down this abusive user.


Finally, the investigation of this IP address was triggered by this
system port scanning our MTA (a common indicator that a proxy server is
about to try to send spam) as shown in the following log record(s):
> Sep 9 05:43:45 trustem01.trustem.net sendmail[8273]: h899he2B008273:
[202.138.189.xxx] did not issue MAIL/EXPN/VRFY/ETRN during connection
to MTA

 
I'm not an IIS expert but I believe it means that your SMTP service is allowing relays (spammers are sending mail through your server). You can turn this off by going into Computer Management | IIS | SMTP | Access | Relay and disable relaying.

=========================
rollout
=========================
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top