On Sep 11, 2005, at 4:53 PM, Jason Dixon wrote:
On Sep 11, 2005, at 4:48 PM, Justin Krejci wrote:
The SMTP Fixup "feature" also includes several other "features"
such as
limiting concurrent connections from each external host. This
"feature"
causes so many problems for anyone with a lot of mail and are also
using an
external mail spam/virus filtering service because usually tons of
mail
originates from only a handful of servers, the filtering servers.
I don't know much about the Cisco fixup feature set, but limiting
by num of connections can be addressed with PF.
One of the "features" I've usually found of the SMTP fixup is that it
also does not speak ESMTP, rather just SMTP, that is RFC821 which is
from 1982. Thereby reducing the overall security. I've never taken
the time to figure out what else gets disabled, as this "feature"
causes harm, and never any good from what I can tell.
-Chad
_\|/_
(o o)
----------------------------------------------oOO-(_)-OOo------
Chad M Stewart, GCIH
[EMAIL PROTECTED] http://balius.com/ Balius Inc.
"If you don't do it right the first time, you'll just
have to do it again." -- Jack T. Hankins
---------------------------------------------------------------