Email server

From: Tim Longo (tlongo_at_research.avayalabs.com)
Date: 10/26/04

  • Next message: Andrew Hall: "odd syntax error in bge.conf"
    Date: Tue, 26 Oct 2004 10:43:49 -0400
    To: sunmanagers@sunmanagers.org
    
    

    I have been running a 220R (2cpu, 2GB RAM), as a mail server for about
    80 people. Seems more than adequate under normal conditions.

    Recently, I've had a couple of situations where someone running an
    misconfigured notification tool flooded the mail server which bacame a
    DOS attack. The problem has been resolved, but it made me realize how
    vulnerable the mail server is to this type of attack.

    I'm wondering if anyone can cite some experience or give some
    suggestions to reduce this type of vulnerability? Since I am running
    sendmail, I have set a queue and reject load average, but I'd like to
    do more. I don't think the number of people I service requires more
    hardware, but that may be necessary too.

    Thank you for any input.
    _______________________________________________
    sunmanagers mailing list
    sunmanagers@sunmanagers.org
    http://www.sunmanagers.org/mailman/listinfo/sunmanagers


  • Next message: Andrew Hall: "odd syntax error in bge.conf"

    Relevant Pages

    • Re: Netstat -an readings
      ... or you could be getting used as a spam relay (the reason for most of the ... sure your mail server config has been edited properly. ... > has multiple connections established to my port 25. ... Is this a DOS attack or is this normal? ...
      (RedHat)
    • Buffer Overrun in FTGate4 Groupware Mail server
      ... Package: FTGate4 Groupware Mail server ... Vulnerability Type: Remote Code Execution ... FTGate4 is a powerful Windowscommunication suite that combines ...
      (Bugtraq)
    • Re: Blocked ip by spam
      ... > the internal net or somebody is using an external smtp server from ... the mail server is an open relay. ... There is a relatively new vulnerability for exchange hosts (2000, ...
      (alt.computer.security)
    • Re: Kerio Mail Server Multiple Security vulnerabilities
      ... Kerio.com mail server dev is claiming that kerio mail server is not ... the explanation in reproducing the vulnerability. ... Releasing Another SECURITY ADVISORY against newest version of Kerio ...
      (Bugtraq)