Michael Scheidell wrote:
> But then again, this is the bunch that blacklisted MY WHOLE CLASS C when a
> vendor plugged an infected laptop into our conference room jack on the
> outside of our firewall (vendors are now forbidden from connecting to our
> network.  If they don't have a evdo card they are without internet access)

It is a shame that you forbid network access.  Instead you could avoid
the problem you had by blocking outbound smtp port 25 access.  That is
what most networks are doing these days and would prevent your problem
from recurring while still providing normal network connectivity.

Random clients do *not* need outbound smtp port 25 access.  Most
vendors will use a company VPN for their network access and others may
use TLS for just mail access.  For those misguided souls still trying
to send smtp on port 25 from random locations can simply be blocked
when away from their home base.  This should encourage them to improve
their configuration.

Bob

Reply via email to