[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Re: Re: Re: [RaQ2] SMTP server failure after RaQ2-All-Security Release update



> 
> We've never received any complaints that we were the source 
> of spam or open for relaying spam....  Who is the moron 
> hammering at my box (from whence does he/she/it hammer at my 
> box)?  What can be done - aside from testing us for the 
> presence of an open relay and pop-before-smtp - to harden the RaQ2?

You'll need to check your access log once you found the script being
abused. Then just search for the identical time to one of the entries
from the maillog. You should then see where the, (if it was
formmail.pl), IP of the abuser is.
-- 
Dan Kriwitsky