Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Blocking Port 25 » its about time
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Blocking port 25 ... is a good idea ... »
AuthorAll Replies


en102
Canadian, eh?

join:2001-01-26
Valencia, CA
·RoadRunner Cable
·DSL EXTREME

reply to cowboy
Re: its about time

Without doing this properly, the ISP are screwing with telecomuters, tech folk, etc...
For example, I regulary sendmail from whatever box I'm on (work, home, laptop during travel) from any one of at least six different domains ! Yes, I use my ISP as a smarthost at times, but at times I can't.


This is just another reason to have

A) A Business account, which would not restrict these ports (vs. standard!), and could allow you to run servers if you want
B) Web based email.
C) VPN to your email / business

The only saving grace for me, is that my ISP allowed me to opt out of the port 25 block (in exchange for scanning, which I'm cool with - no open proxies) - so in a pinch I can always bounce mail through my home box to wherever I need it to go (via STARTTLS/AUTH on port 587, of course).

I agree that ISPs could offer to allow port 25 in exchange for scanning. I have SBC, which requires authentication for sending email as well as recieving, and I for one do not mind. On a daily basis at work, my domains see between 2000 and 5000 spam messages a day, and those are the ones that don't get rejected due to fake domains, etc. It's a waste of bandwidth and resources. I agree that this will not stop everything, as spam is big business.


cowboy
So Much For Subtlety
Premium
join:2000-03-14
Morgan Hill, CA
·Covad Communications
·DSL EXTREME

This is just another reason to have

A) A Business account, which would not restrict these ports (vs. standard!), and could allow you to run servers if you want
B) Web based email.
C) VPN to your email / business


No... you're missing the point...
*) I am not a business
*) I have personal web based mail, as does my ISP, my company and groups I do volunteer work for DO NOT !
*) Some of the groups I volunteer for DO NOT have VPNs setup
*) I have a VPN to work - unfortunately it is Windows only - there is a hack to do similiar on Linux, but it is *NOT* supported - and often broken.

If your answer is for me to become a business - upgrade my phone and DSL (usually both have to be done) to work around poorly planned and implimented filters by ISPs - and lack of decent company support.... then too much of your income comes from the ISP/telco side.

I agree that ISPs could offer to allow port 25 in exchange for scanning. I have SBC, which requires authentication for sending email as well as recieving, and I for one do not mind.

Good for them ! Do they also allow authenticated sending from outside their network ?

On a daily basis at work, my domains see between 2000 and 5000 spam messages a day, and those are the ones that don't get rejected due to fake domains, etc. It's a waste of bandwidth and resources. I agree that this will not stop everything, as spam is big business.

Right... so after filtering, we'll suffer through SPF, DomainKeys, etc... and each will fail to stop the problem Remember, spam isn't SPFs selling point - it is forged senders... but all these break in subtle ways with forwarding, and/or have other issues.

And unfortunately, a some of that money winds up in the ISPs pockets... Thats why netblocks (or the threats of same) used to be resorted to...
--
Richard Nelson


en102
Canadian, eh?

join:2001-01-26
Valencia, CA
·RoadRunner Cable
·DSL EXTREME

No... you're missing the point...
*) I am not a business
*) I have personal web based mail, as does my ISP, my company and groups I do volunteer work for DO NOT !
*) Some of the groups I volunteer for DO NOT have VPNs setup
*) I have a VPN to work - unfortunately it is Windows only - there is a hack to do similiar on Linux, but it is *NOT* supported - and often broken.


A) Get your company to get up to date, with either web based access or VPN based access. If they require you to access remotely, then they should be providing a reasonable/secure access method.

If your answer is for me to become a business - upgrade my phone and DSL (usually both have to be done) to work around poorly planned and implimented filters by ISPs - and lack of decent company support.... then too much of your income comes from the ISP/telco side.
Work with your ISP, they might give you port 25 for no charge. While I agree that there are going still going to be holes in almost any fix, and blocking port 25 is only a bandaid to a much more serious problem.

Good for them ! Do they also allow authenticated sending from outside their network ?

Yes!
Forums » Blocking Port 25Blocking port 25 ... is a good idea ... »


Monday, 09-Nov 02:43:31 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [156] Cable Uncapper Faces Criminal Charges
· [140] AT&T Sues Verizon Over 3G Ads
· [112] Why Run Fiber When You Can Run Ads That Pretend You Do?
· [109] Comcast Is Simply Getting Huge
· [93] Apple Cooking Up New $30 A Month TV Service?
· [83] Bits Of ACTA Agreement Leaking Out
· [80] Will 'Three Strikes' Come To The United States?
· [78] Verizon To Double Smartphone ETFs?
· [77] Verizon: Droid Tethering Will Cost $30 Extra
· [73] Comcast, NBC Deal Almost Complete
Most people now reading
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· My cat is reluctant to exercise. [General Questions]
· Garbage Disposal and Dishwasher [Home Repair & Improvement]
· [Rant] Brand New 'Jasper' Xbox360 - RRoD Hardware Failure [Rants, Raves, and Praise]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· [WIN7] Which Services in Win 7 Have You Turned Off? [Microsoft Help]
· Hit and run [General Questions]
· NIS 2008 -> 2009 upgrade problems [Security]
· Lots of problems lately? [Rogers]
· [LA] Will we have the highest HSI bill? [Cox HSI]