Re: [Exim] Problem: Relaying for uncommon nets

Top Page
Delete this message
Reply to this message
Author: Giuliano Gavazzi
Date:  
To: Christian Hertel, exim-users
Subject: Re: [Exim] Problem: Relaying for uncommon nets
At 1:31 pm +0200 2004/06/02, Christian Hertel wrote:
>--
>Hi Guiliano,
>
>> have you got an example of your exim relaying from anywhere...?
>
>what do you mean with "example"?
>Even if I define only 127.0.0.1 and 120.255.255.0/24, a client from e.
>g. 192.168.0.1 can relay over our exim (-> open mail relay).


still you are not showing an example!
I have added a line exactly like yours to my test exim (4.30) and it
does *not* relay from arbitrary sources. Nico's suggestion to run
under the -bh flag is also good.

>
>>  [...]
>>  >   accept  domains       = +forward_domains
>>  >           verify        = recipient
>>  >           endpass

>>
>>              ^^^^^^^ ! perhaps this might confuse exim?
>>  [...]

>
>Hmmm, I copied the ACL from an other example configuration and modified
>it. What would be different if I leave "endpass" out.
>Why do you think that this might confuse exim?


Because endpass usually expects something after it. I don't think
this has anything to do with this though.

>
>If I change 120.255.255.0/24 to e. g. 192.168.0.0/24, relaying works as
>expected. I suppose exim does not handle these .255. correctly, but have
>not yet tried to verify this behavior.


I would then look at the changes introduced by version 4.31, as 4.30
does not show this behaviour.

Giuliano
--
H U M P H
    || |||
  software


Java & C++ Server/Client/Human Interface applications on MacOS - MacOS X
http://www.humph.com/