Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

How do I restrict my mail server from being an open relay?

Following the guide here https://help.apple.com/advancedserveradmin/mac/10.8/#apdB3F8B86B-1839-4692-85FD- 007FC7222B78 is not helpful as it refers to server admin tool (which I believe no longer exists for 10.8.2)?

What do I need to manually edit to tighten my security?

Macbook Pro, Mac OS X (10.7.1), Lion Server

Posted on Jan 30, 2013 3:10 AM

Reply
7 replies

Feb 5, 2013 8:23 AM in response to Linc Davis

So in the advanced admin guide at this page http://help.apple.com/advancedserveradmin/mac/10.8/#apdB3F8B86B-1839-4692-85FD-0 07FC7222B78


I can't do what it directs with the server app (replace server admin with server)?


  1. In Server Admin, select a server in the Servers list, and then select Mail.
  2. Click Settings, and then click Relay.


There is no Settings -> Relay?

  1. Select “Accept SMTP relays only from these hosts and networks.”
  2. Edit the list of hosts by choosing one of the following:
    • Click the Add button ➕ to add a host to the list.
    • Click the Remove button (–) to delete the selected host on the list.
    • Click the Edit button (/) to change a host on the list.
    When adding to the list, Server Admin accepts a variety of notations. You can:
    • Enter a single IP address or the network/netmask pattern, such as 192.168.40.0/21.
    • Enter a host name, such as mail.example.com.
    • Enter an Internet domain name, such as example.com.

Feb 5, 2013 9:56 AM in response to bmyatt

They've removed that setting from the GUI. By default, Postfix is configured to accept mail only from the local subnet. If that's what you want it to do, you don't have to change anything. Otherwise, you'll have to edit the directives in the section "TRUST AND RELAY CONTROL" in the file


/Library/Server/Mail/Config/postfix/main.cf

Feb 5, 2013 3:48 PM in response to bmyatt

As Linc noted above, you don't need to do anything special to prevent your system from being an open relay.


If you're a belt-and-suspenders guy, you can double-check your installation with this nifty tool from MXToolbox: http://www.mxtoolbox.com/diagnostic.aspx. Just type your server's address into the box and hit "Test Email Server". It'll run for a few moments and check a few settings on your machine. OS X Server should pass all tests with a default installation.


This tool is also handy for periodically checking to make sure your IP address isn't on a realtime blacklist (RBL).

How do I restrict my mail server from being an open relay?

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple ID.