Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

telnet to port 25

Status
Not open for further replies.

cygnul

Technical User
Jan 11, 2002
33
GB
hi

if i telnet to port 25(smtp) on a server can i stop that from happening at the router? in other words - can i stop somone from telneting into my smtp server through my router without denying traffic on port 25? hope im making sense

cheers
 
You can set up an access-list to allow port 25 traffic coming from your ISP's mail servers only and deny everything else
 
The access list would only be of use if mail only came from the ISP's mail server. If you have an SMTP feed to your mail server then mail needs to be accepted from anywhere. However, there is a way round this. Ask your ISP to set up a secondary MX record in DNS for their mail spooler. Then have them block traffic from all other IP ranges on port 25 but allow mail from the spooler. When mail attempts to be delivered it will be knocked back by the access-list on the core router at the ISP and so will be delivered to the mail spooler. The mail spooler will then attempt to deliver the mail the the first MX preference and will be allowed. So, you get your mail and no one can telnet in to your mail server.

Chris.
************************
Chris Andrew, CCNA
chrisac@gmx.co.uk
************************
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top