I've got Authenticated relaying enabled. Any IP I put in Block hosts still gets through and I get warning mails about failed authentication. What to do?
This thread was automatically locked due to age.
On the surface, it looks ok.
Are there multiple IPs, because it looks like you're using a Network Group for traffic from?
These are external IPs that you're trying to blacklist, correct?
Are you using the default SMTP service definition, where source port is 1:65,535 and destination port is 25?
The address for OpenFiber 100-100 is the one used in your external DNS MX record (the one mails will come into, correct?
Assuming that you have multiple external IPs, you've confirmed that the OpenFiber 100-100 address is the one that they are attempting to connect to, right?
As you have log initial packets checked, anything showing in the full firewall log for these connections?
The SMTP Proxy listens for 25, 465 and 587 on all NICs, but probably you just need to add 465 to the DNAT.
Cheers - Bob