Hi Bob,
sorry for returning to this old thread, but I am a bit confused on the Transparent mode or not. Following the question from "JonEtkins" I also would enable Transparent mode to intercept all port 25 traffic - no hosts in "Skip Transparent Mode Hosts/Nets". Otherwise you will need to DNAT to the internal mail server.
Yes, only internal mailserver in Allowed SMTP hosts on the Relaying tab.
Am I missing something here?
/Claus, DK
Hi Bob,
sorry for returning to this old thread, but I am a bit confused on the Transparent mode or not. Following the question from "JonEtkins" I also would enable Transparent mode to intercept all port 25 traffic - no hosts in "Skip Transparent Mode Hosts/Nets". Otherwise you will need to DNAT to the internal mail server.
Yes, only internal mailserver in Allowed SMTP hosts on the Relaying tab.
Am I missing something here?
/Claus, DK
Transparent mode isn't needed to avoid DNAT, Claus. All SMTP traffic from the Internet that hits an Interface with a default gateway will be captured by the SMTP Proxy without Transparent mode. SMTP traffic from the internal mailserver will be captured by the SMTP Proxy without Transparent mode.
In Transparent mode, the SMTP Proxy will also capture all SMTP Traffic that hits Interfaces without a default gateway. This can allow infected PCs to spam the world and get your IP onto many RBLs. I recommend using Transparent only for debugging purposes and leaving it off virtually all of the time.
Cheers - Bob