I've got Authenticated relaying enabled. Any IP I put in Block hosts still gets through and I get warning mails about failed authentication. What to do?
This thread was automatically locked due to age.
it looks like that Email Protection now has higher priority than SMTP DNATYou may want to take that to support, if paid license. They will not be able to fix it, but can get it up the chain to dev. Proxy having higher precedence than NAT has some severe connotations that'll break a lot of configurations.
Tech support has been less than helpfulTheir knowledge level, skills, and abilities are too limited to actually assist with this. Their usefulness in this situation is to get information about the problem to development, where it can actually be fixed.
So what is the new order of precedenceOstensibly we've no idea, as these changes were not documented for 9.3. Same with some other issues that are probably related, like the way the web proxy, NAT, and application control has changed, breaking necessary functionality. Best case scenario is that these effects were unintentional and will be reverted back in an up2date or two.
greets
zaphod
___________________________________________
Home: Zotac CI321 (8GB RAM / 120GB SSD) with latest Sophos UTM
Work: 2 SG430 Cluster / many other models like SG105/SG115/SG135/SG135w/...
How can I still be getting SMTP authentication attempts from an IP that is both SMTP relay blacklisted and DNAT blackholed? [:S]
..blacklisted hosts are rejected after RCPT TO command, but UTM allows them AUTH LOGIN which comes earlier in SMTP communication.
..blacklisted hosts are rejected after RCPT TO command, but UTM allows them AUTH LOGIN which comes earlier in SMTP communication.