Our features site is undergoing a refresh! Be sure to explore the revamped site and discover our latest product roadmap launching here on Monday, March 18th.

Security Advisor - focus briefly on exim abuse, smtp traffic

feanor shared this idea 6 years ago
Open Discussion

As a System Administrator & shared hosting provider, it would be helpful if the Security Advisor turned additional attention to any chaotic-or-worse smtp activities, so that any mounting crimes against the environment could more aptly be circumvented.. before it's "Too Late"


##############################

Because email is still, sometimes, or always, the worst.

Shouldn't take too long to crunch these-

1) quick check for RBLs carrying the base hostname & base address (i.e. mxtoolbox)

2) check for mounting exim dir sizes or exponentially-worsening file descriptors, therein

3) check 'realtime' netstats for arcane or worse smtp bindings, subsequent activities

4) possibly analyze exim_mainlog/etc for sendmail being called aggressively


Perhaps this could save some severe brain pain for customers, and/or admins.

Thanks very much for your consideration.

Leave a Comment
 
Attach a file