My last post was pretty incomprehensible, so I regrouped my thoughts!
We've got a 2nd email domain that's been added behind our Astaro. Our original environment is all local-subnets only for sending out mail, the new email domain is all external, users are all over the country with a combination of residential and business connections.
Further complicating the issue is that there is no central authentication method for these users - no AD or anything else. So, as of right now I've had to bypass the SMTP proxy (using DNAT) for this email domain, which is not ideal.
What I'm trying to figure out is what the simplest way to enable these users to relay. I'd prefer to avoid having them authenticate through the Astaro, as the SMTP server already has a comprehensive relay policy in place. I don't see any way to let only specific domains have lax relaying policies.
Any suggestions on what to pursue? I know it's a big no-no, but I was considering setting the allowed relay to "all" - BUT only if the individual servers relaying restrictions remained in place. Obviously that's not something I want to test in a production environment.
This thread was automatically locked due to age.