|
有一各來自 220.135.23.44 的 ip 好像利用我的服務器寄信
請問要如何禁止他 ??????
我在/etc/mail/access 中設也沒用
192.168.1.0 RELAY
211.139.189.35 REJECT
220.135.23.44 REJECT
211.158.69.107 REJECT
每天系統寄信給我都有些不是系統裡的名字出現
################### LogWatch 4.3.1 (01/13/03) ####################
ReadHat 9.0版本
Sendmail version 8.12.8
有啟動 smtp 的認證功能
################################################################
--------------------- Connections (secure-log) Begin ------------------------
Connections:
Service pop3:
192.168.1.3: 2 Time(s)
192.168.1.7: 22 Time(s)
192.168.1.9: 120 Time(s)
192.168.1.13: 20 Time(s)
192.168.1.16: 24 Time(s)
192.168.1.17: 19 Time(s)
220.135.23.44: 10 Time(s) <-------------黑客嗎
**Unmatched Entries**
webmin[3249]: Webmin starting
---------------------- Connections (secure-log) End -------------------------
--------------------- sendmail Begin ------------------------
1 messages returned after 5 days
Unknown users:
[email protected]: 1 Times(s) --------
[email protected]: 1 Times(s) |
[email protected]: 1 Times(s) |
[email protected]: 1 Times(s) |
[email protected]: 1 Times(s) | --> 不是我建立的
[email protected]: 1 Times(s) | 查系統也沒這些名
[email protected]: 1 Times(s) |
[email protected]: 1 Times(s) |
[email protected]: 1 Times(s) -----------
Relaying denied:
From [222.101.109.159] to [email protected]: 1 Times(s)
**Unmatched Entries**
AUTH=server, relay=[192.168.1.16], authid=jinnzan, mech=LOGIN, bits=0: 4 Time(s)
AUTH=server, relay=[192.168.1.9], authid=sk009, mech=LOGIN, bits=0: 2 Time(s)
AUTH=server, relay=[192.168.1.17], authid=ming-zen, mech=LOGIN, bits=0: 2 Time(s)
AUTH=server, relay=[192.168.1.9], authid=jinnzan, mech=LOGIN, bits=0: 1 Time(s)
DSN: User unknown: 1 Time(s)
STARTTLS=client, relay=lab408-168.cc.ntu.edu.tw., version=TLSv1/SSLv3, verify=FAIL, cipher=DHE-RSA-AES256-SHA, bits=256/256: 1 Time(s)
STARTTLS=client, relay=relay3.tp1rc.edu.tw., version=TLSv1/SSLv3, verify=FAIL, cipher=DHE-RSA-AES256-SHA, bits=256/256: 1 Time(s)
ruleset=check_rcpt, [email protected], relay=[211.224.152.214], reject=550 5.7.1 [email protected]... Relaying denied. IP name lookup failed [211.224.152.214]: 1 Time(s)
---------------------- sendmail End -------------------------
--------------------- SSHD Begin ------------------------
SSHD Started: 1 Time(s)
**Unmatched Entries**
succeeded
---------------------- SSHD End -------------------------
###################### LogWatch End #########################
|
|