Re: [Asrg] MXs Used As Authentication - Why RMX?

"Alan DeKok" <aland@freeradius.org> Sat, 20 September 2003 01:36 UTC

Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id VAA00655 for <asrg-archive@odin.ietf.org>; Fri, 19 Sep 2003 21:36:53 -0400 (EDT)
Received: from www1.ietf.org (localhost.localdomain [127.0.0.1]) by www1.ietf.org (8.12.8/8.12.8) with ESMTP id h8K1VhAn020140 for <asrg-archive@odin.ietf.org>; Fri, 19 Sep 2003 21:36:33 -0400
Received: (from exim@localhost) by www1.ietf.org (8.12.8/8.12.8/Submit) id h7PI3q1f004516 for asrg-archive@odin.ietf.org; Mon, 25 Aug 2003 14:03:52 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19rLgz-0001AK-RV for asrg-web-archive@optimus.ietf.org; Mon, 25 Aug 2003 14:03:49 -0400
Received: from optimus.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id OAA05296; Mon, 25 Aug 2003 14:03:43 -0400 (EDT)
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19rLgH-0000wO-Bo; Mon, 25 Aug 2003 14:03:05 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19rJjX-000520-BU for asrg@optimus.ietf.org; Mon, 25 Aug 2003 11:58:19 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id LAA25478 for <asrg@ietf.org>; Mon, 25 Aug 2003 11:58:13 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19rJjW-0002wJ-00 for asrg@ietf.org; Mon, 25 Aug 2003 11:58:18 -0400
Received: from giles.striker.ottawa.on.ca ([192.139.46.36] helo=mail.nitros9.org ident=root) by ietf-mx with esmtp (Exim 4.12) id 19rJjV-0002wG-00 for asrg@ietf.org; Mon, 25 Aug 2003 11:58:17 -0400
Received: from [127.0.0.1] (helo=giles.striker.ottawa.on.ca ident=aland) by mail.nitros9.org with esmtp (Exim 3.34 #1) id 19rJjV-0004nD-00 for asrg@ietf.org; Mon, 25 Aug 2003 11:58:17 -0400
From: Alan DeKok <aland@freeradius.org>
To: asrg@ietf.org
Subject: Re: [Asrg] MXs Used As Authentication - Why RMX?
In-Reply-To: Your message of "Mon, 25 Aug 2003 07:28:44 EDT." <p06001f06bb6fa1cd6f86@[192.168.254.12]>
Message-Id: <E19rJjV-0004nD-00@mail.nitros9.org>
Sender: asrg-admin@ietf.org
Errors-To: asrg-admin@ietf.org
X-BeenThere: asrg@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=unsubscribe>
List-Id: Anti-Spam Research Group - IRTF <asrg.ietf.org>
List-Post: <mailto:asrg@ietf.org>
List-Help: <mailto:asrg-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=subscribe>
List-Archive: <https://www1.ietf.org/mail-archive/working-groups/asrg/>
Date: Mon, 25 Aug 2003 11:58:17 -0400

Bill Cole <aarg@billmail.scconsult.com> wrote:
> It is not what happens in the real world. For sites handling 
> significant mail volume, outbound mail and inbound mail are large 
> enough and different enough in their ideal system design that it 
> makes sense to have them handled by different systems.

  Further, anecdotal evidence suggests that the simple existence of
outgoing SMTP servers means that they will be targeted by spammers.

  That is, mailing list archives contain IP's of outgoing SMTP
servers, and spammers troll the net looking for such IP's.  When
found, those IP's are hit with delivery attempts for that domain,
relay attempts, and other nonsense.

  It's been suggested that outgoing SMTP servers should be in an
entirely different address range than incoming servers, and that those
outgoing servers shouldn't accept ANY traffic other than what they
originate.  No SMTP, no ICMP, nothing at all.

  Similarly, I'm seeing 1000's of delivery attempts a day for a
domain, to an IP which hasn't been the MX for that domain for years.
Spammers really are that desperate.

  Alan DeKok.

_______________________________________________
Asrg mailing list
Asrg@ietf.org
https://www1.ietf.org/mailman/listinfo/asrg