{"id":30,"date":"2006-12-13T13:14:46","date_gmt":"2006-12-13T13:14:46","guid":{"rendered":"http:\/\/parkesy.wordpress.com\/2006\/12\/13\/smtp-relaying\/"},"modified":"2006-12-13T13:14:46","modified_gmt":"2006-12-13T13:14:46","slug":"smtp-relaying","status":"publish","type":"post","link":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/","title":{"rendered":"SMTP Relaying"},"content":{"rendered":"<p><font size=\"2\" face=\"Arial\">Uh oh, two rants in a row!<\/p>\n<p>We have a customer that uses a database application. Part of this application allows you to bulk e-mail people on the database (lets call them clients!)<\/p>\n<p>The software gives you two options<\/p>\n<p>1)\u00a0Let Outlook do the heavy lifting<\/p>\n<p>2) Specify an SMTP server and the software will send the emails via that<\/p>\n<p>We can&#8217;t use the Outlook method as\u00a0a security message is displayed for every\u00a0email sent. If this were for\u00a05000 clients that&#8217;s a lot of dialog boxes!\u00a0<\/p>\n<p>Now the software doesn&#8217;t authenticate with the SMTP server so as far as it&#8217;s concerned your trying to <strong>relay<\/strong>.<\/p>\n<p>We got the software working by allowing the IP address of the computer to relay on the SMTP server.<\/p>\n<p>I wasn&#8217;t too pleased about this setup for a couple of reasons<\/p>\n<p>Firstly while we&#8217;re only allowing one IP address to relay at the moment our customer would like any of the users to be able to use the functionality.<\/p>\n<p>Second,\u00a0I\u00a0don&#8217;t want any unauthenticated users to be able to relay. What if that particular computer\u00a0becomes infected with some nasty software. It wouldn&#8217;t take much to scan the local subnet for an SMTP server and it would be SPAM for everyone!<\/p>\n<p>However, we have lots of different types of protection in place. Anti-virus on the desktop. Anti-virus at the mail server. Mail is filtered by a third party before it comes into the network and their IP address is the ONLY inbound SMTP traffic allowed. This means that the odds of the nasty scenario actually occurring are quite small.<\/p>\n<p>But it still could happen!\u00a0The odds of it increase if we allow all\u00a0users to relay so I told our customer I wouldn&#8217;t recommend this configuration.<\/p>\n<p>At the moment the software vendor have no plans to change their software.<\/p>\n<p>There is a user group for the software so our customer sent an email around to see how everyone else was using it.<\/p>\n<p>We had about 15-20 replies and only one of them agreed that there was a problem here.<\/p>\n<p>I believe that security starts from the INSIDE. Just because the SMTP server can&#8217;t be a relay from the Internet doesn&#8217;t make it any less of a threat.<\/p>\n<p>So am I in the wrong? I am really worrying over nothing or are all those other users exposing themselves? (so to speak!) Should the vendor be doing more with their software?<\/p>\n<p>Any comments would be greatly received<\/p>\n<p><\/font><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Uh oh, two rants in a row! We have a customer that uses a database application. Part of this application allows you to bulk e-mail people on the database (lets call them clients!) The software gives you two options 1)\u00a0Let Outlook do the heavy lifting 2) Specify an SMTP server and the software will send<\/p>\n<p><a class=\"readmore\" href=\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/\"><span class=\"arrow-right icon\"><\/span>Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[38],"tags":[],"class_list":["post-30","post","type-post","status-publish","format-standard","hentry","category-rants"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.11 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>SMTP Relaying - Andy&#039;s Techie Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SMTP Relaying - Andy&#039;s Techie Blog\" \/>\n<meta property=\"og:description\" content=\"Uh oh, two rants in a row! We have a customer that uses a database application. Part of this application allows you to bulk e-mail people on the database (lets call them clients!) The software gives you two options 1)\u00a0Let Outlook do the heavy lifting 2) Specify an SMTP server and the software will sendRead More\" \/>\n<meta property=\"og:url\" content=\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/\" \/>\n<meta property=\"og:site_name\" content=\"Andy&#039;s Techie Blog\" \/>\n<meta property=\"article:published_time\" content=\"2006-12-13T13:14:46+00:00\" \/>\n<meta name=\"author\" content=\"Andy Parkes\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Andy Parkes\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/\",\"url\":\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/\",\"name\":\"SMTP Relaying - Andy&#039;s Techie Blog\",\"isPartOf\":{\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/#website\"},\"datePublished\":\"2006-12-13T13:14:46+00:00\",\"dateModified\":\"2006-12-13T13:14:46+00:00\",\"author\":{\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/#\/schema\/person\/3534e8ac6b1bec765cd061feff56679d\"},\"breadcrumb\":{\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/andyparkes.co.uk\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SMTP Relaying\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/#website\",\"url\":\"https:\/\/andyparkes.co.uk\/blog\/\",\"name\":\"Andy&#039;s Techie Blog\",\"description\":\"Professional Geek\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/andyparkes.co.uk\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/#\/schema\/person\/3534e8ac6b1bec765cd061feff56679d\",\"name\":\"Andy Parkes\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/andyparkes.co.uk\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3824cbf53df51d7ca5cf809b6ad81a157fbfff2292e36ab8666f04ddad06bfcc?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3824cbf53df51d7ca5cf809b6ad81a157fbfff2292e36ab8666f04ddad06bfcc?s=96&d=mm&r=g\",\"caption\":\"Andy Parkes\"},\"description\":\"Andy Parkes is Technical Director at Coventry based IT support company IBIT Solutions. Formerly, coordinator of AMITPRO and Microsoft Partner Area Lead for 2012-2013. He also isn't a fan of describing himself in the third person.\",\"sameAs\":[\"http:\/\/www.andyparkes.co.uk\/blog\"],\"url\":\"https:\/\/andyparkes.co.uk\/blog\/index.php\/author\/andyparkes\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"SMTP Relaying - Andy&#039;s Techie Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/","og_locale":"en_US","og_type":"article","og_title":"SMTP Relaying - Andy&#039;s Techie Blog","og_description":"Uh oh, two rants in a row! We have a customer that uses a database application. Part of this application allows you to bulk e-mail people on the database (lets call them clients!) The software gives you two options 1)\u00a0Let Outlook do the heavy lifting 2) Specify an SMTP server and the software will sendRead More","og_url":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/","og_site_name":"Andy&#039;s Techie Blog","article_published_time":"2006-12-13T13:14:46+00:00","author":"Andy Parkes","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Andy Parkes","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/","url":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/","name":"SMTP Relaying - Andy&#039;s Techie Blog","isPartOf":{"@id":"https:\/\/andyparkes.co.uk\/blog\/#website"},"datePublished":"2006-12-13T13:14:46+00:00","dateModified":"2006-12-13T13:14:46+00:00","author":{"@id":"https:\/\/andyparkes.co.uk\/blog\/#\/schema\/person\/3534e8ac6b1bec765cd061feff56679d"},"breadcrumb":{"@id":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/andyparkes.co.uk\/blog\/index.php\/2006\/12\/13\/smtp-relaying\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/andyparkes.co.uk\/blog\/"},{"@type":"ListItem","position":2,"name":"SMTP Relaying"}]},{"@type":"WebSite","@id":"https:\/\/andyparkes.co.uk\/blog\/#website","url":"https:\/\/andyparkes.co.uk\/blog\/","name":"Andy&#039;s Techie Blog","description":"Professional Geek","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/andyparkes.co.uk\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/andyparkes.co.uk\/blog\/#\/schema\/person\/3534e8ac6b1bec765cd061feff56679d","name":"Andy Parkes","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/andyparkes.co.uk\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/3824cbf53df51d7ca5cf809b6ad81a157fbfff2292e36ab8666f04ddad06bfcc?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3824cbf53df51d7ca5cf809b6ad81a157fbfff2292e36ab8666f04ddad06bfcc?s=96&d=mm&r=g","caption":"Andy Parkes"},"description":"Andy Parkes is Technical Director at Coventry based IT support company IBIT Solutions. Formerly, coordinator of AMITPRO and Microsoft Partner Area Lead for 2012-2013. He also isn't a fan of describing himself in the third person.","sameAs":["http:\/\/www.andyparkes.co.uk\/blog"],"url":"https:\/\/andyparkes.co.uk\/blog\/index.php\/author\/andyparkes\/"}]}},"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pmvJ6-u","jetpack_likes_enabled":true,"_links":{"self":[{"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/posts\/30","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/comments?post=30"}],"version-history":[{"count":0,"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/posts\/30\/revisions"}],"wp:attachment":[{"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/media?parent=30"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/categories?post=30"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/andyparkes.co.uk\/blog\/index.php\/wp-json\/wp\/v2\/tags?post=30"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}