RBL checking before SMTP auth for remote POP/SMTP users

Just curious, does anyone know if this is still the case where the GWIA will reject a SMTP connection based on the RBL's before a user is able to authenticate?
Yet if we point the SMTP to GMAIL it works OK, so Google obviously don't Black List consumer broadband subnets.
The reason I wonder is that I have a situation again where a user working from home (on a consumer broadband plan) is being rejected from sending SMTP email via their office GWIA.
To get around this in the past, I have configured a second GWIA on a say port 26 that only accepts authenticated SSL connections, and instructed remote staff to send via this GWIA.
- Gordon

On 01.07.2013 16:46, gordon mzano wrote:
>
> JUST CURIOUS, DOES ANYONE KNOW IF THIS IS STILL THE CASE WHERE THE GWIA
> WILL REJECT A SMTP CONNECTION BASED ON THE RBL'S BEFORE A USER IS ABLE
> TO AUTHENTICATE?
Yes, that's still the case.
> Yet if we point the SMTP to GMAIL it works OK, so Google obviously
> don't Black List consumer broadband subnets.
Of course they don't, it would invalidate their whole product, which is
designed to be used from such subnets.
> The reason I wonder is that I have a situation again where a user
> working from home (on a consumer broadband plan) is being rejected from
> sending SMTP email via their office GWIA.
> To get around this in the past, I have configured a second GWIA on a
> say port 26 that only accepts authenticated SSL connections, and
> instructed remote staff to send via this GWIA.
Another, much more functional option is of course to open up the POA
ports to the outside and let your remote users use the groupwise client
instead of pity POP/SMTP.
CU,
Massimo Rosen
Novell Knowledge Partner
No emails please!
http://www.cfc-it.de

Similar Messages

  • Mail has stopped sending all mail.  Insist that outgoing servers are offline.  Have checked all setting preferences for outgoing servers including user name and password.

    Mail has stopped sending all email.  Says all outgoing servers are offline and server certificate are invalid.  Have gone into preferences/accounts/edit SMTP servers and reentered all data including user name and password.
    Have had  this happen before and had to upgrade to Maverick to cure it.

    So? What's your problem? BTW, you show SL as the OS, but mention installing Mavs. Very confusing.
    27" i7 iMac (Mid 2011) refurb, OS X Yo (10.10.1), Mavs, ML & SL, G4 450 MP w/10.5 & 9.2.2

  • How to start listener in sql developer for remote debug

    how to start listener in sql developer for remote debug ? Since the new version 1.1.0.23 is different with the old version for remote debug, I don't know how to start the listener on the new version for remote debug.
    even follow the user guide below and not work . Experts on sql developer please help me with this.
    Remote Debugging
    To debug a procedure or function for a connection where the database is on a different host than the one on which you are
    running SQL Developer, you can perform remote debugging.
    Remote debugging involves many of the steps as for local debugging; however, do the
    following before you start the remote debugging: Use an Oracle client such as SQL*Plus to issue the debugger connection command. Whatever
    client you use, make sure that the session which issues the debugger connection commands is the same session which executes your PL/SQL
    program containing the breakpoints.
    For example, if the name of the remote system is remote1, use the following SQL*Plus command to open a
    TCP/IP connection to that system and the port for the JDWP session:
    EXEC DBMS_DEBUG_JDWP.CONNECT_TCP('remote1', '4000'); The first parameter
    is the IP address or host name of the remote system, and the second parameter is the port number on that remote system on which the debugger
    is listening.
    Right-click the connection for the remote database, select Remote Debug, and complete the information in the Debugger - Attach
    to JPDA dialog box. Then, follow the steps that you would for local debugging (for example, see Debugging a PL/SQL Procedure).
    Debugger - Attach to JPDA This dialog box is displayed when you right-click a database connection name and select Remote Debug.
    Use this
    dialog box if you are using the Sun Microsystem's Java Platform Debugger Architecture (JPDA) and you would like the debugger to listen so
    that a debuggee can attach to the debugger.
    For more information about remote debugging, see Remote Debugging.
    Host: Name or IP address of
    the remote host on which SQL Developer should listen for the database to connect.
    Port: Listening port number on the remote host. You can
    choose any valid port number that is not in use by another process.
    Timeout: The number of seconds that SQL Developer will wait for the
    remote database to make a debugging connection. Don't Show Dialog Box Before Connecting: If this option is checked, this dialog box will not
    be displayed before future connections for remote debugging

    You're not the only one:
    Not able to start remote debug listener
    Re: remote debug question at version 1.1.0.23 64

  • Remote Access VPN Users with CX Active Authentication.

    I have ASA 5515 with CX for webfiltering , also have enabled remote access vpn . All my inside users are able to get active and passive authentication correctly . But for remote access VPN users , they are redirected to ASA external ip and CX authentication port 9000 but a blank page comes in and there is no prompt for authentication. I wasnt doing split tunneling , but now i have excluded ASA WAN ip from the tunnel and still have the same issue.
    The CX version we have is 9.3.1.1

    Have you excluded the VPN traffic from being NATed when traffic is going between clients?
    Please post a full sanitised configuration of the router so we can check it for configuration issues.
    Please remember to select a correct answer and rate helpful posts

  • Pop before smtp and smtp auth

    Hi Jay,
    hope all is well with you.
    what is pop before smtp and how to see if it is enabled?
    what is smtp auth and how to see if it is enabled? Is it enabled by default on MS 6.x?
    what happens if smtp auth is not enabled? Will my mail server be a relay?
    Is there any additional configuration that should be done on messaging server to allow connection for dial-up users?
    thanks,

    Hi Jay,
    hope all is well with you.
    what is pop before smtp and how to see if it is
    enabled?Pop before SMTP is a very old, and little used method for "authenticating" users. There is virtually no reason to turn this on, anymore.
    It's done through the MMP, and is the only reason to actually use the SMTP proxy that's part of MMP.
    I would not go there unless your environment requires it. Most do not. Most clients support SMTP authentication, which is much better, and is on by default.
    >
    what is smtp auth and how to see if it is enabled? Is
    it enabled by default on MS 6.x?See above. Yes, smtp authentication is on by default.
    >
    what happens if smtp auth is not enabled? Will my
    mail server be a relay?Totally different issue.
    No.
    If smtp auth is off, if you have external users, they likely will not be allowed to send to other external users..
    >
    Is there any additional configuration that should be
    done on messaging server to allow connection for
    dial-up users?If "dial-up users" means that they come from ip addresses outside your network, then smtp auth will allow them full access.
    thanks,

  • How to satisfy POP-before-SMTP outgoing authentication?

    When using a third party email account (i.e. included with my website hosting account), I am unable to send email. The outgoing server auth method used on my host server is POP-before-SMTP. However, in the iphone settings, there are only 4 choices:[ MD5 C-R // NTLM // HTTP MD5 Digest // Password ] Having set POP or IMAP every 15 minutes is sufficient interval to satisfy ... no problem there ... there doesn't need to be a specific choice for pop-before-smtp, but there does not appear to be a way to choose NO authentication at all for SMTP?
    (i.e. with some computer email programs which do not support POP-before_SMTP, we turn outgoing authentication to OFF and ensure that email is retrieved on a regular schedule < 20 minutes, and all works perfectly.) For example, the Android Xperia has a NONE setting for SMTP auth.
    There's no choice for either pop-before-smtp nor OFF on the iphone.
    Can anyone suggest an app [or is it possible to hack] that would give us this functionality ?
    We know we could use our carrier's SMTP, but we want BOTH our incoming/outgoing mail handled on our hosting server.

    So, I've set SSL as "required", and also set CRAM-MD5, and basically I can see now that I can't receive any emails.
    This really is one of the areas in which the Server Admin GUI lets you down.
    If you set SSL as required, many remote servers won't be able to talk to you because they don't talk SSL by default. To enforce SSL for your users you really need a second port that forces SSL in addition to the standard port that doesn't.
    You can do that, but only by delving in to Postfix's configuration files.
    However, I've gotten something strange - I thought SMTP over SSL should default to 587. Why is it defaulted to 25 still? Do I need to add 587 somewhere else or something?
    Ahh, the joys of ports.
    There are two methods of implementing SSL with SMTP. One is SMTPS (which runs on port 465), the other is via TLS which uses the standard SMTP port. The difference is that SMTPS encrypts the entire connection (similar to HTTPS vs. HTTP), whereas TLS starts off with a non-encrypted connection and switches to secure once both client and server agree to use it (the client identifies itself, the server states it can use TLS, the client initiates a TLS session).
    TLS is the model supported by Postfix, and that's why you still use port 25
    Port 587 is the submission port. The line between 25 and 587 is pretty blurry, but many people implement different access controls and/or process rules for port 587 and have local users use that, leaving port 25 for non-local mail. Both ports can support TLS but you need to get under the hood to configure it.

  • Pop before SMTP

    Hi Guys,
    I've recently moved from my Linux Mail Server to Leopard Server, and am now experiencing issues sending mails from outside my internal LAN.
    Basically, I get the message: NOQUEUE, RCPT - relay access denied. I believe it's because it doesn't know that I am a trusted machine, and thus rejects the relay.
    In an attempt to fix this problem, I had to get POP before SMTP installed as a workaround on the Linux machine few years back.
    Any ideas on how I can change this with Leopard Server? Should I enable SSL? Should I enable MD5 Password or something? Or do I still need to install POP-before-SMTP?
    Thanks for all your kind help in advance.

    So, I've set SSL as "required", and also set CRAM-MD5, and basically I can see now that I can't receive any emails.
    This really is one of the areas in which the Server Admin GUI lets you down.
    If you set SSL as required, many remote servers won't be able to talk to you because they don't talk SSL by default. To enforce SSL for your users you really need a second port that forces SSL in addition to the standard port that doesn't.
    You can do that, but only by delving in to Postfix's configuration files.
    However, I've gotten something strange - I thought SMTP over SSL should default to 587. Why is it defaulted to 25 still? Do I need to add 587 somewhere else or something?
    Ahh, the joys of ports.
    There are two methods of implementing SSL with SMTP. One is SMTPS (which runs on port 465), the other is via TLS which uses the standard SMTP port. The difference is that SMTPS encrypts the entire connection (similar to HTTPS vs. HTTP), whereas TLS starts off with a non-encrypted connection and switches to secure once both client and server agree to use it (the client identifies itself, the server states it can use TLS, the client initiates a TLS session).
    TLS is the model supported by Postfix, and that's why you still use port 25
    Port 587 is the submission port. The line between 25 and 587 is pretty blurry, but many people implement different access controls and/or process rules for port 587 and have local users use that, leaving port 25 for non-local mail. Both ports can support TLS but you need to get under the hood to configure it.

  • I don't know what is going on with the White Balance (WB) and LR.  I had no problem before but recently LR started to change the  WB as  it is importing photos.  I checked the color scale for my photos and LR and both are with sRGB.  Now instead of LR cha

    I don't know what is going on with the White Balance (WB) and LR.  I had no problem before but recently LR started to change the  WB as  it is importing photos.  I checked the color scale for my photos and LR and both are with sRGB.  Now instead of LR changing the WB it is giving me a second copy with a new WB.  Your advise is very much needed and appreciated.  Thank you.

    Can you show us a screen capture of this 2nd copy with a new WB in your Lightroom grid? Thanks
    Are these second copy photos by any chance photos that had been previously imported?

  • Datasource: ORA-02019: connection description for remote database not found

    Hi,
    I recently made the datasource to point to a new host, and using the EM console tested the connectivity to the datasource to be successful.
    Java code that refers to the DS is also the same as before that was working as only the connection string has been changed, but now trying to access the web-application shows the following error in the logs:
    ==============
    Exception::java.sql.SQLException: ORA-02019: connection description for remote database not found
    oracle.jdbc.driver.DatabaseError.throwSqlException(DatabaseError.java:138)
    oracle.jdbc.driver.T4CTTIoer.processError(T4CTTIoer.java:316)
    oracle.jdbc.driver.T4CTTIoer.processError(T4CTTIoer.java:282)
    oracle.jdbc.driver.T4C8Oall.receive(T4C8Oall.java:639)
    oracle.jdbc.driver.T4CStatement.doOall8(T4CStatement.java:113)
    oracle.jdbc.driver.T4CStatement.execute_for_describe(T4CStatement.java:431)
    oracle.jdbc.driver.OracleStatement.execute_maybe_describe(OracleStatement.java:1029)
    oracle.jdbc.driver.T4CStatement.execute_maybe_describe(T4CStatement.java:463)
    oracle.jdbc.driver.OracleStatement.doExecuteWithTimeout(OracleStatement.java:1126)
    oracle.jdbc.driver.OracleStatement.executeQuery(OracleStatement.java:1274)
    oracle_jdbc_driver_T4CStatement_Proxy.executeQuery()=====================================
    What could be the reason? Is there any other app server datasource related setting that needs to be done or is it some other issue - as I said 'testing the connection from EM console connects successfully'.
    Thanks,
    Rommel.

    The issue is resolved now.
    One of the queries used a db link that was missing on the new database and therefore the error from the java code.
    Since testing for connectivity using DS through EM console does not check for any db link (using the default query it executes) connectivity was successful.
    Thank a lot,
    Rommel.

  • The Data Access service is either not running or not yet initialized. Check the event log for more information

    Hi,
    I have SCSM with remote SQL and the SCSM Management server give below error
    Message: Failed to connect to server ‘Name of Server’
    Microsoft.EnterpriseManagement.Common.ServiceNotRunningException: The Data Access service is either not running or not yet initialized. Check the event log for more information. —> System.ServiceModel.EndpointNotFoundException: Could not connect to net.tcp://ServerName:5724/DispatcherService.
    The connection attempt lasted for a time span of 00:00:04.0070932. TCP error code 10061: No connection could be made because the target machine actively refused it IPAddress:5724.  —> System.Net.Sockets.SocketException: No connection could be made
    because the target machine actively refused it IPAddress:5724
    I had try to restart SQL & MS with same error,
    Also i had try the following
    https://social.technet.microsoft.com/Forums/systemcenter/en-US/c670d54d-3a92-481f-8dc9-55c475ad196f/problems-with-data-access-service-after-rebooting
    https://social.technet.microsoft.com/Forums/systemcenter/en-US/26dc1d5c-fa82-403f-8949-3073f3b82a60/the-data-access-service-is-either-not-running-or-not-yet-initialized
    Not help meRegards

    I had same error before 
    below steps to solve it
    Make sure SQL Server Running & ServiceManager Database not full
    Stop All SCSM Services,
               System Center Management Configuration
       Microsoft System Center Data Access Service.
       Microsoft Monitoring Agent
    Rename Health Service State to Health Service State_old --- @ "C:\Program Files\Microsoft System Center 2012 R2\Service Manager"
    Start SCSM Services
        Microsoft Monitoring Agent
               System Center Management Configuration
       Microsoft System Center Data Access Service.
    Wait 2 min...
    check Event Viewer... 
    hope this help you.
    Regards, Ibrahim Hamdy

  • Material Master check before PO creation.

    Hi,
    I have a requirement where some procured materials need to be checked before the purchase requisition is converted into a PO.
    The client wants the system to pop up a message saying "Check Material" when they are creating a PO, so they can back out and check material, make the corrections that they need and then go back in to convert the purchase requisition into PO.
    Is this possible in SAP? How? I do not want to flag the material for deletion.
    Thanks in advance.

    Dear,
    At the time of po creation you can see material master with help of double click on material code. But as per my knowladge you can't change material master at the time of purchase order creation.
    If i correct please revert back.
    Sorry but due to word problem i repeat it.
    Regards,
    Mahesh Wagh

  • Trying to use iCloud sending server for other POP accounts

    I have an iCloud email address, and 2 other non Apple POP email accounts set up in Mail running OSX 10.7.5.  I've forwarded my 2 POP accounts to my iCloud address so mail coming to those email addresses will sync with my iOS devices via iCloud.  On my Mac, if I reply to one of these messages, it wants to use the sending server for the POP account, which means the reply will not end up in my iCloud sent mail, and therefore won't sync with my iOS devices.
    I tried to set up the POP account using the iCloud server with the following settings: 
    Server Name: smtp.mail.me.com
    Default Ports 25, 465, 587
    Use Secure Sockets Layer
    Password Authentication
    User Name:  [email protected]
    Password:  My Apple ID Password
    When I try to use this server when sending from these POP accounts, I get an error that Mail can't send with that server.  I run the connection doctor, and everything checks out OK.
    Is there a way I can accomplish this?
    Thanks,
    Dan

    try logging in to your email account through the web browser and in the web client there should be auto forward setting set it up in the web client and delete the email  account from mail and then all of your email will be forwarded to your icloud account on all youre devices

  • Mail passwords for a pop account

    I have two mail accounts one pop account in belgium and one mac account. After upgrading to leopard, mail is asking on an irregular basis for the password for the pop account.
    In the preferences for mail the password for the pop account doesn't show, even after it has been given again. It look likes if Mail doesn't save it, it doesn't show up in the preferences. Even a new set-uo if the mail account didn't solve the problem.
    How can I solve this problem?

    I have also tried this and even setting up a new emailaccount. When setting it up it takes halv an hour to the computer in checking the connections with the smtp server and sometimes it fails. The strange thing is that I also get the question about the certicate for my smptpserver and the question if I am going to rely on it. I answer yes. And then it works a few times. But then it is the same song again
    It asks me for a password. I I don´t check the option remember password in keyring it keeps asking until I check it. And then it´s ok until next time it asks me for the password and then there is one more identical password in my keyring.
    The main issue to me is why I can´t save the setting password and why it changes to apopathentification. I.M.H. O i consider this as a major bug in Leopard and have also reported it.
    Setting up an applemail following the set up assistant sho9luld be a piece of cake. But it is not and even my emailprover has failed to find a solution on this and say this is something wrong with the settings or the applemail.
    My wife who also have an applemailaccount has faced the same problems since I upgraded to Leopard.

  • Option to disable iTunes volume control for remote speakers?

    I have noticed that with iTunes 10, the option to disable the volume control for remote speakers seems to have disappeared from Preferences>Devices. If you click the "?" button, the help window gives an explanation of what its for but the option to check/uncheck it clearly isn't there. Since iTunes 10, streaming my music from my iMac to my Denon receiver via Airtunes/Airplay with an Airport Express has been disappointing. The volume is far too low. With version 9 and every version prior, the volume control option was always there in preferences and I always had it disabled; music came through loud and clear but since this option appears to no longer exist, the volume through the Denon receiver fails to impress, even with the iTunes volume slider at max.
    Anyone else noticed steaming volume too low? If so, agree that it's a bug?
    Message was edited by: Brian I.

    I wholeheartedly agree with "I also used to disable the volume control to reduce the amount that my computer interferes with the sound before it gets to the external DAC." There is no reason why Apple shouldn't restore this important setting option as the volume control does negatively affect sound quality in a high-end set-up and we'd rather not just take their word for it that the volume control's maximum setting is the same as disabling it. Why does the volume slider change the output level even when using the Airport Express' digital output? It shouldn't, and it seems the sound is now being force sent through a stupid digital volume control for no good reason. If for no other reason the "disable" option should be restored to avoid inadvertent volume changes via the Remote app for iPod Touch and iPhone. Strangely as compared to several other posts here, my perceived volume level now seems louder than before, not softer as others are reporting. People that are serious about sound quality do not want iTunes or AirPlay (formerly AirTunes) to manipulate the volume level or any other aspect of the sound at all ever, as it can't help but only hurt. I also thought the "disable" setting was available in the Airport Utility previously, but it's vanished from there too.

  • (Cisco Historical Reporting / HRC ) All available connections to database server are in use by other client machines. Please try again later and check the log file for error 5054

    Hi All,
    I am getting an error message "All available connections to database server are in use by other client machines. Please try again later and check the log file for error 5054"  when trying to log into HRC (This user has the reporting capabilities) . I checked the log files this is what i found out 
    The log file stated that there were ongoing connections of HRC with the CCX  (I am sure there isn't any active login to HRC)
    || When you tried to login the following error was being displayed because the maximum number of connections were reached for the server .  We can see that a total number of 5 connections have been configured . ||
    1: 6/20/2014 9:13:49 AM %CHC-LOG_SUBFAC-3-UNK:Current number of connections (5) from historical Clients/Scheduler to 'CRA_DATABASE' database exceeded the maximum number of possible connections (5).Check with your administrator about changing this limit on server (wfengine.properties), however this might impact server performance.
    || Below we can see all 5 connections being used up . ||
    2: 6/20/2014 9:13:49 AM %CHC-LOG_SUBFAC-3-UNK:[DB Connections From Clients (count=5)]|[(#1) 'username'='uccxhrc','hostname'='3SK5FS1.ucsfmedicalcenter.org']|[(#2) 'username'='uccxhrc','hostname'='PFS-HHXDGX1.ucsfmedicalcenter.org']|[(#3) 'username'='uccxhrc','hostname'='PFS-HHXDGX1.ucsfmedicalcenter.org']|[(#4) 'username'='uccxhrc','hostname'='PFS-HHXDGX1.ucsfmedicalcenter.org']|[(#5) 'username'='uccxhrc','hostname'='47BMMM1.ucsfmedicalcenter.org']
    || Once the maximum number of connection was reached it threw an error . ||
    3: 6/20/2014 9:13:49 AM %CHC-LOG_SUBFAC-3-UNK:Number of max connection to 'CRA_DATABASE' database was reached! Connection could not be established.
    4: 6/20/2014 9:13:49 AM %CHC-LOG_SUBFAC-3-UNK:Database connection to 'CRA_DATABASE' failed due to (All available connections to database server are in use by other client machines. Please try again later and check the log file for error 5054.)
    Current exact UCCX Version 9.0.2.11001-24
    Current CUCM Version 8.6.2.23900-10
    Business impact  Not Critical
    Exact error message  All available connections to database server are in use by other client machines. Please try again later and check the log file for error 5054
    What is the OS version of the PC you are running  and is it physical machine or virtual machine that is running the HRC client ..
    OS Version Windows 7 Home Premium  64 bit and it’s a physical machine.
    . The Max DB Connections for Report Client Sessions is set to 5 for each servers (There are two servers). The no of HR Sessions is set to 10.
    I wanted to know if there is a way to find the HRC sessions active now and terminate the one or more or all of that sessions from the server end ? 

    We have had this "PRX5" problem with Exchange 2013 since the RTM version.  We recently applied CU3, and it did not correct the problem.  We have seen this problem on every Exchange 2013 we manage.  They are all installations where all roles
    are installed on the same Windows server, and in our case, they are all Windows virtual machines using Windows 2012 Hyper-V.
    We have tried all the "this fixed it for me" solutions regarding DNS, network cards, host file entries and so forth.  None of those "solutions" made any difference whatsoever.  The occurrence of the temporary error PRX5 seems totally random. 
    About 2 out of 20 incoming mail test by Microsoft Connectivity Analyzer fail with this PRX5 error.
    Most people don't ever notice the issue because remote mail servers retry the connection later.  However, telephone voice mail systems that forward voice message files to email, or other such applications such as your scanner, often don't retry and
    simply fail.  Our phone system actually disables all further attempts to send voice mail to a particular user if the PRX5 error is returned when the email is sent by the phone system.
    Is Microsoft totally oblivious to this problem?
    PRX5 is a serious issue that needs an Exchange team resolution, or at least an acknowledgement that the problem actually does exist and has negative consequences for proper mail flow.
    JSB

Maybe you are looking for