Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 4 of 4
  1. #1
    tps
    tps is offline
    Registered User
    Join Date
    Dec 2009
    Posts
    1

    Default PCI Compliance - Exim

    Has anyone out there run into any issues trying to pass the PCI scans with cPanel and using Exim?

    I've used Security Metrics and HackerGuardian scans it's telling me that I have an open relay. I have turned off the antirelayd service in cPanel and am puzzled at how to solve this issue.

    I was told by that this is because I have an open internal relay and that it returns a 250 code after telneting into the server on the smtp port. Any idea how to fix this?

    thanks a lot.

  2. #2
    Member
    Join Date
    Jan 2005
    Location
    Earth
    Posts
    1,050

    Default

    Well, by default relaying isn't ON on a cPanel server. Try turning off antirelayd and see if it makes any difference.

  3. #3
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Sep 2007
    Posts
    139

    Default

    Have you tested this manually or have they given you the commands they are using to test? If the domain is not hosted on your server, it should not accept it or send it out unless you are authenticated.

  4. #4
    Member
    Join Date
    May 2008
    Posts
    1,203

    Default

    1. Turn on the antirelayd (WHM -> Service Configuration -> Service Manager) to verify your server is not open relay.
    2. add this following line to your /etc/exim.conf file

    auth_hosts = *

    All the mails sent using your server's smtp will have to pass an authorization first with a user/pass and it will allow only those users whose email address exists on your server.

Similar Threads & Tags
Similar threads

  1. PCI Compliance - Exim
    By tps in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 12-23-2009, 12:14 PM
  2. POP3/EXIM plain text password (PCI Compliance)
    By p1mp in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 04-06-2009, 09:08 PM
  3. Security Metrics PCI compliance - Exim fails test.
    By jols in forum E-mail Discussions
    Replies: 6
    Last Post: 12-11-2008, 11:55 PM
  4. OpenSSL, Exim Version problems for PCI-Compliance
    By jlhost in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 11-21-2008, 01:20 PM
  5. POP3/EXIM plain text password (PCI Compliance)
    By kmpanilla in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 04-03-2008, 10:14 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube