Vulnerability scan of Control Center port 41025 reported as open SMTP relay
search cancel

Vulnerability scan of Control Center port 41025 reported as open SMTP relay

book

Article ID: 220100

calendar_today

Updated On:

Products

Messaging Gateway

Issue/Introduction

When running a vulnerability scanner against the Messaging Gateway Control Center, the scan results indicate that SMTP interface on port 41025 is an open relay.

Environment

Component : Control Center

Cause

The vulnerabilty scanner is misinterpreting the SMTP interface accepting the message as accepting it for relay rather than to be quarantined.

Resolution

This is a false positive.

The SMTP interface on port 41025 of the Messaging Gateway Control Center will accept mail to any domain or recipient but has no message delivery capabilities. Messages accepted by the Control Center are quarantined in either the Spam Quarantine or Content Quarantine depending on the SMG configuration. These messages can be manually released from the quarantine but there is no open relay.