Merit Network
Can't find what you're looking for? Search the Mail Archives.
  About Merit   Services   Network   Resources & Support   Network Research   News   Events   Home

Discussion Communities: Merit Network Email List Archives

North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

RE: Why do so few mail providers support Port 587?

  • From: andrew2
  • Date: Fri Feb 25 14:49:33 2005

Valdis.Kletnieks@vt.edu wrote:
> On Fri, 25 Feb 2005 12:56:50 EST, andrew2@one.net said:
> 
>> Sorry, I misread that.  But I still fail to see how 587 changes that.
>> Trojans, viruses, etc. etc. etc. can still exploit the authentication
>> system regardless of what port it operates on.  Different port, same
>> old problems.
> 
> It changes it only in that it becomes a *lot* easier for you
> to track down which of your users has a compromised machine.
> (It's a lot easier to just look at the Received: headers than
> have to take the hostname, chase it back through your logs,
> and all that - especially if the user is roaming and just
> caught something over their Aunt Tilly's unsecured wireless
> access point....)

Yes.  Authenticated SMTP makes tracking down which of your users is
doing the spamming easier.  But you're assuming that SMTP AUTH isn't
being used on port 25 already.  You can do SMTP AUTH just as easily on
port 25 without having to re-educate your users and still net the same
simplified tracking procedures that you mention.  It sounds to me like
what we should really be talking about is getting MTA operators to begin
using SMTP authentication of some kind (any kind!), rather than harping
on whether or not MTA's should accept mail on port 587...

Andrew





Discussion Communities


About Merit | Services | Network | Resources & Support | Network Research
News | Events | Contact | Site Map | Merit Network Home


Merit Network, Inc.