Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 10 of 10
  1. #1
    Member
    Join Date
    Sep 2001
    Posts
    189

    Exclamation ALL CPANEL servers = limited open relays

    Hi,

    ALL CPANEL servers = limited open relays

    I sent this warning to Nick twice (today and a month ago), but nothing was changed/updated... May be this thread will speedup the process.

    The problem - If I know that you host domain.com on the server with Cpanel, I can use mail.domain.com as SMTP server to send spam a) to this domain b) to all domains on the server.

    It's HUGE PROBLEM!

    p.s. I sent an email to Nick using mail.cpanel.net as SMTP server

    cPanel.net Support Ticket Number:
    Alex Andreyev,
    http://www.WHost.INFO - NEW web hosting directory.

  2. #2
    BANNED
    Join Date
    Aug 2003
    Posts
    93

    Default Re: ALL CPANEL servers = limited open relays

    Originally posted by H2Hosting.com
    Hi,

    ALL CPANEL servers = limited open relays

    I sent this warning to Nick twice (today and a month ago), but nothing was changed/updated... May be this thread will speedup the process.

    The problem - If I know that you host domain.com on the server with Cpanel, I can use mail.domain.com as SMTP server to send spam a) to this domain b) to all domains on the server.

    It's HUGE PROBLEM!

    p.s. I sent an email to Nick using mail.cpanel.net as SMTP server

    cPanel.net Support Ticket Number:
    Is that after;

    Tue Sep 2 18:33:07 EDT 2003
    7.x Build#1
    ---------------------------------------------------------------

    exim4 4.22 (security fix)
    ---------------------------------------------------------------

    cPanel.net Support Ticket Number:

  3. #3
    Member
    Join Date
    Aug 2002
    Posts
    170

    Default

    You can do that on any mail server.

    The mailserver is supposed to accept all messages that are for local delivery, because its a delivery and not a RELAY.
    If it didnt, you wouldnt be able to get any mail.

    cPanel.net Support Ticket Number:
    Host Ultra
    Quality Affordable Web Hosting

  4. #4
    Member
    Join Date
    Sep 2001
    Posts
    189

    Default

    Originally posted by hostultra
    You can do that on any mail server.

    The mailserver is supposed to accept all messages that are for local delivery, because its a delivery and not a RELAY.
    If it didnt, you wouldnt be able to get any mail.
    Wrong! If my IP is not in the relay_hosts list, I should not send anything using YOUR smtp to YOUR customers. If all servers have the same configuration, it's impossible to stop spam as you should block your own IP to stop it.

    p.s. if you confirm, I will send test email to you through your SMTP.

    cPanel.net Support Ticket Number:
    Alex Andreyev,
    http://www.WHost.INFO - NEW web hosting directory.

  5. #5
    Member
    Join Date
    Aug 2002
    Posts
    170

    Default

    Please give me an example of a mailserver that doesnt accept local deliveries.

    Connecting directly to the SMTP and sending the mail locally is a delivery not a relay.

    cPanel.net Support Ticket Number:
    Host Ultra
    Quality Affordable Web Hosting

  6. #6
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Feb 2002
    Posts
    57

    Default

    The only solution I can think of is to configure the mail server with a separate ip address for each hosted client.. Which is *not* a good solution.. Since smtp does not pass the hostname you are connecting too.


    This way when the mail server answers for a particular ip address it knows which domain name it's affiliated with and would only allow relay to that domain.

    cPanel.net Support Ticket Number:
    Roman Kazan
    roman@escape.com
    http://www.escape.com
    Online Service Provider since 1987.

  7. #7
    Member
    Join Date
    Sep 2001
    Posts
    189

    Default

    Hostultra,

    I sent test message to your support@ account.

    Look at the header of this email. It's impossible to stop such abuse with current exim+cpanel configuration

    cPanel.net Support Ticket Number:
    Alex Andreyev,
    http://www.WHost.INFO - NEW web hosting directory.

  8. #8
    Member
    Join Date
    Sep 2001
    Posts
    189

    Default

    Originally posted by hostultra
    Connecting directly to the SMTP and sending the mail locally is a delivery not a relay.
    It it was just local delivery, spammers would use YOUR smtp to send spam to YOUR account What is a reason to search for exploits/proxies/open relays if I can send spam using YOUR SMTP! Your RBLs will not block such spam!

    cPanel.net Support Ticket Number:
    Alex Andreyev,
    http://www.WHost.INFO - NEW web hosting directory.

  9. #9
    Member
    Join Date
    Apr 2003
    Posts
    243

    Default

    i think your making a fuss about nothing, being able to connect to mail.cpanel.net and sending a mail to nick@cpanel.net (or whatever) is hardly radical stuff, and i would of thought would of been common sense since your duplicating whats done by mta's

    You may wish to search google (or your favourite search engine) for direct-to-mx spam

    cPanel.net Support Ticket Number:
    Last edited by howard; 09-03-2003 at 11:20 PM.

  10. #10
    Member
    Join Date
    Apr 2002
    Posts
    19

    Default

    This is common, this is how the mail system works! People have known about this for a while and so have spammers, it is not isolated ot cpanel but to any SMTP server. The reason people still USE relays is because they dont have or want there IP's to be blocked, if i have a server and i write a program to send out using the MTA of each email addy, the IP is in the header, thousands of complaints will be sent to the owner of the block, usually the ISP And i will be shut down immediatly. This is why they mask there IP's using relays etc..

    cPanel.net Support Ticket Number:

Similar Threads & Tags
Similar threads

  1. configurar PTR y OPEN RELAYS
    By guatemalanet in forum Discusión en Español
    Replies: 0
    Last Post: 04-06-2008, 12:45 AM
  2. Relays, exim and cpanel
    By split in forum cPanel and WHM Discussions
    Replies: 5
    Last Post: 10-20-2006, 07:29 AM
  3. Detecting 'Open Relays'
    By bidware in forum cPanel and WHM Discussions
    Replies: 5
    Last Post: 10-02-2006, 11:14 AM
  4. open relays, blacklisted on AOL, ip literals.
    By majik in forum cPanel and WHM Discussions
    Replies: 14
    Last Post: 12-23-2003, 03:58 PM
  5. Replies: 21
    Last Post: 05-08-2003, 02:31 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube