[ale] exim or bastille problem...

Bob Toxen transam at verysecurelinux.com
Fri Apr 1 12:23:06 EST 2005


On Fri, Apr 01, 2005 at 10:01:47AM -0500, J.M. Taylor wrote:
> Setting up a new mail server using Exim. I always use Bastille to
> harden my servers, and am quite familiar with its firewall config and I
> know it's allowing port 25. A quick glance at my currently running 
> iptables shows that traffic to port 25 should be allowed.  

> And yet, I can't telnet to the port. I'm running exim as a daemon.  I'm
> not seeing anything in my logs except that exim 
1. xinetd dies periodically due to being buggy.

2. The system could be overloaded by connections (probably spammers or
   crackers) and thus cannot fork processes fast enough.

3. tcp wrappers

4. Any IP Tables or IP Chains rules

> refused connection from {hostname} [IP] (tcp wrappers) 

> Over and over again. What could be up with this?  xinetd is not running
> that I can see, it's certainly not set to run at this runlevel and doesn't
> mention smtp anyway. This is Fedora Core 3, if that helps. What else could 
> be blocking email in such a way?  

> Thanks

> -- 
> Jenn Taylor
> jtaylor at onlinea.com

> ------------------------------------------------------------------------
> Obviously, a man's judgement cannot be better than the information on which he
> has based it.  Give him the truth and he may still go wrong when he has
> the chance to be right, but give him no news or present him only with distorted
> and incomplete data, with ignorant, sloppy or biased reporting, with propaganda
> and deliberate falsehoods, and you destroy his whole reasoning processes, and
> make him something less than a man.
> -- Arthur Hays Sulzberger



More information about the Ale mailing list