On Sep 11, 2005, at 4:53 PM, Jason Dixon wrote:

On Sep 11, 2005, at 4:48 PM, Justin Krejci wrote:


The SMTP Fixup "feature" also includes several other "features" such as limiting concurrent connections from each external host. This "feature" causes so many problems for anyone with a lot of mail and are also using an external mail spam/virus filtering service because usually tons of mail
originates from only a handful of servers, the filtering servers.


I don't know much about the Cisco fixup feature set, but limiting by num of connections can be addressed with PF.



One of the "features" I've usually found of the SMTP fixup is that it also does not speak ESMTP, rather just SMTP, that is RFC821 which is from 1982. Thereby reducing the overall security. I've never taken the time to figure out what else gets disabled, as this "feature" causes harm, and never any good from what I can tell.


-Chad
                                                 _\|/_
                                                 (o o)
----------------------------------------------oOO-(_)-OOo------
Chad M Stewart, GCIH
[EMAIL PROTECTED] http://balius.com/        Balius Inc.

"If you don't do it right the first time, you'll just
have to do it again."   -- Jack T. Hankins
---------------------------------------------------------------

Reply via email to