[Dovecot] Dovecot security

Patrick Ben Koetter p at sys4.de
Wed Aug 14 09:16:41 EEST 2013


* Jay Khashan <jkhashan at msn.com>:
> Hi,
> 
> THIS IS URGENT 
> 
> I have Debian Linux machine which I installed as a mail server with postfix, and dovecot. my mail server is setup to use SMTP relay. I currently have ports 143, 995, 25 & SSMTP ports open. in the last few days I have been under attack where email is being sent to fake email address for example xxx at evg-mail.org which does not exist in the mysql db. 

Show evidence.

>  I need to figure out and lock down dovecot, because I believe the attack is some kind of virus /spyware. I need to know what statement in dovecot.conf or main.cf (postfix) I can modify to lock it down. Also open to install software to combat this kind of attack. Let me know what configuration files, info do you need to help out

At the moment Dovecot can't send mail. Postfix can.

p at rick

-- 
[*] sys4 AG
 
http://sys4.de, +49 (89) 30 90 46 64
Franziskanerstraße 15, 81669 München
 
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
Vorstand: Patrick Ben Koetter, Axel von der Ohe, Marc Schiffbauer
Aufsichtsratsvorsitzender: Florian Kirstein
 


More information about the dovecot mailing list