Great Circle Associates Firewalls
(August 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Rewriting mail headers through FW
From: Eduardo Egues <eddie @ mail . infocom . etecsa . cu>
Date: Thu, 28 Aug 1997 22:48:37 -0400 (EDT)
To: Gene Lee <genel @ inforamp . net>
Cc: "'firewalls @ greatcircle . com'" <firewalls @ GreatCircle . COM>
In-reply-to: <9708280-0038704 @ server1 . in . etecsa . cu> for <eddie @ mail . infocom . etecsa . cu>; Fri, 29 Aug 1997 00:52:28 GMT


On Wed, 27 Aug 1997, Gene Lee wrote:

> I've currently got Sendmail v8.8 on a Linux box running behind IBM Firewall 
> 3.1, which is running an SMTP proxy for mail destined for the internal 
> network. For example's sake, the internal domain is abc.net and the 
> external domain is abc.com. I've got the following in my sendmail.cf:
> 
> # "Smart" relay host to forward outgoing mail
> DSfirewall.abc.net
> 
> # Masquerade option to accept mail destined for ibm.com
> DMfirewall.abc.com
> 
> firewall.abc.net and firewall.abc.com are the same machine multihomed on 
> two domains. I have no MX pointers on the outside so all mail is sent to 
> user @
 firewall .
 abc .
 com as opposed to user @
 abc .
 com, and the internal DNS 
> replicates a dummy db.abc.com to resolve firewall.abc.com to 
> firewall.abc.net.
> 
> Mail sent from the internal domain with firewall.abc.net as the SMTP host 
> works, with user @
 firewall .
 abc .
 net changed to user @
 firewall .
 abc .
 com, and 
> mail sent to firewall @
 abc .
 com gets sent to the internal mail machine. 
>  Everything seems to work except for one thing: mail sent from the mail 
> machine as root @
 firewall .
 abc .
 net does not get it's headers rewritten to 
> root @
 firewall .
 abc .
 com .
  Not a big deal as root would never have to do a lot 
> of corresponding with the outside world, but any thoughts as to why this 
> abnormal behaviour wrt root?
> 
Hi Gene:

Did you check CE class on sendmail.cf file maybe root appears on it?

Good luck

E.

---------------------------
Eduardo Egues
eddie @
 mail .
 infocom .
 etecsa .
 cu 

> --
> Gene Lee
> genel @
 inforamp .
 net
> genelee @
 ca .
 ibm .
 com
> 
> 
> 


Indexed By Date Previous: Re: Be careful about sending firewall log msgs via pagers - esp alpha msgs
From: Adam Shostack <adam @ homeport . org>
Next: Gauntlet Performance
From: rwm <rmcm001 @ us . net>
Indexed By Thread Previous: Rewriting mail headers through FW
From: Gene Lee <genel @ inforamp . net>
Next: Interest in forming Gauntlet mailling list?
From: Christopher Michael <cm @ rmsbus . com>

Google
 
Search Internet Search www.greatcircle.com