Port 25 to our external ip

Hello,Should someone outside my company be able to telnet to our external ip and reach port 25 when we have it set to allow only specific smtp internet ips to connect to our server?

If not, how can we stop that?

Could this be giving us unwanted smtp email?

Thank you.

Subject: port 25 to our external ip

yes it’s (rfc) normal, most of the commands sent will be rejected by domino until they quit.

if you want to actually ignore (as in not answer) the incoming connection theres an ini variable you can set but it’s limited in that it requires a server shutdown/restart for any changes to it to become effective. see this thread

Subject: RE: port 25 to our external ip

Thank you both for the responses.I am using the Domino Configuration document, but it appeared to be allowing some connections that I did not want.

I checked with the person responsible for the firewall and there were no restrictions, so we are going to set the IP restrictions there also.

Thank you!

Tim

Subject: port 25 to our external ip

How Have you set the restriccion? using a firewall nor using domino configuration document or both?

if you are using a firewall and assuming that the setting is correct, only those internet ip address would be reach your server. Check if your firewall has an input anti-spoofing rule.

if you are using domino configuration document, check the Router/SMTP - Restrictions and control - SMTP inbound Controls section. There is a field “Allow connections only from the following SMTP internet hostnames/IP addresses:”. you could put here these internet IP in format [1.2.3.4].

Regards,

Oswaldo Escobar Mendoza

Lima, Perú