Antonis Rizopoulos: > When I connect to my server, from different networks, to port 25 I am > able to send emails to local users only without authenticate! It's like > bypassing Cyrus-SASL. > I know, of course, that I cannot block access to that port and allow > only authenticated users to send emails, because I won't receive mails > from web sites. But I think this is a huge security issue for my mail > server.
As I replied in private email a week ago, if you change this and always require authentication, then you cannot receive email from other organizations. Wietse