Page 1 of 2 12 LastLast
Results 1 to 10 of 13
  1. #1
    Untangler
    Join Date
    Nov 2009
    Posts
    46

    Default Block trafic port 25 from outside ???

    Hello,

    I do not manage to cut the access of the local network towards ports 25 from the outside to avoid possible post offices infected by viruses of spam.

    I may put any kind of rules in the firewall bur that always passes !

    Rule exemple in my FW:
    Action = block
    Trafic type = TCP & UDP
    Source = Internal
    Destination = External
    Source = Any
    Adress = Any
    Source port = Any
    Destination Port = 25

    Thank for your help

  2. #2
    Untangle Ninja dwasserman's Avatar
    Join Date
    Jun 2008
    Location
    Argentina
    Posts
    3,975

    Default

    From outside or To outside?
    Your rule must block smtp (not encripted) traffic from your lan to internet
    The world is divided into 10 kinds of people, who know binary and those not

  3. #3
    Untangler
    Join Date
    Nov 2009
    Posts
    46

    Default

    Quote Originally Posted by dwasserman View Post
    From outside or To outside?
    Your rule must block smtp (not encripted) traffic from your lan to internet
    To Internet

    I active this rule but don't work

  4. #4
    Untangle Ninja dwasserman's Avatar
    Join Date
    Jun 2008
    Location
    Argentina
    Posts
    3,975

    Default

    Then your mail client not use port 25 sure.
    The world is divided into 10 kinds of people, who know binary and those not

  5. #5
    Untangler
    Join Date
    Nov 2009
    Posts
    46

    Default

    Quote Originally Posted by dwasserman View Post
    Then your mail client not use port 25 sure.
    Yes and i can do a telnet on port 25 to a mail server on internet

  6. #6
    Untangle Ninja dwasserman's Avatar
    Join Date
    Jun 2008
    Location
    Argentina
    Posts
    3,975

    Default

    You are right, can
    Change destination from External to Any , now you only block smtp from inside to external interface of untangle
    The world is divided into 10 kinds of people, who know binary and those not

  7. #7
    Untangler
    Join Date
    Nov 2009
    Posts
    46

    Default

    Quote Originally Posted by dwasserman View Post
    You are right, can
    Change destination from External to Any , now you only block smtp from inside to external interface of untangle
    I change External to any in my rule and test on my client but don't work
    It is always possible to connect in spite of the rule

  8. #8
    Untangler
    Join Date
    Nov 2009
    Posts
    46

    Default

    I think they are a problem with untangle for blocking the port 25 because for testing I do the same rule with the port 587 and the rule work

  9. #9
    some dude hlarsen's Avatar
    Join Date
    Jul 2010
    Location
    sfba
    Posts
    1,318

    Default

    this works.
    Attached Images Attached Images

  10. #10
    Untangler
    Join Date
    Nov 2009
    Posts
    46

    Default

    Quote Originally Posted by hlarsen View Post
    this works.
    The same rule don't work on my UT

Page 1 of 2 12 LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2