Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


mobiusnz

457 posts

Ultimate Geek


#215094 12-Jun-2017 13:06
Send private message

Anyone out their that can confirm this for me - I've just send a bunch of emails via SMTP.CLEAR.NET.NZ from my gmail address to my office 365 account and vice versa using a simply SMTP client and SMTP.CLEAR.NET.NZ has accepted them all and delivered them even though I'm a 2 Degrees Broadband user - This either means they are open relay or at the very least allowing downstream providers (I believe Snap use to get bandwidth from Vodafone - Not sure if they still do) or NZ ips to Relay.

 

This is incredibly helpful to spammers wanting to Reach NZ users?????

 

 





Matt Beechey Mobius Network Solutions


Create new topic
mobiusnz

457 posts

Ultimate Geek


  #1798447 12-Jun-2017 13:09
Send private message

Just tried it from a client on Spark and they accepted and relayed that too - It would appear in their rush to "FIX" their email they have severely compromised their security - Anyone from Vodafone watching this forum!!!!

 

 





Matt Beechey Mobius Network Solutions




MikeHales
615 posts

Ultimate Geek

Trusted

  #1798449 12-Jun-2017 13:11
Send private message

Yes, will look into that

yitz
2081 posts

Uber Geek


  #1798450 12-Jun-2017 13:11
Send private message

There will be rate limits in place, not all that different from the old smtp.xtra.co.nz



mobiusnz

457 posts

Ultimate Geek


  #1798451 12-Jun-2017 13:12
Send private message

As I said - I used a simple SMTP mail client on my pc and then the same client on a customers server who is with spark and smtp.clear.net.nz accepted both emails without Authentication and without the domains being managed by Vodafone/Clear





Matt Beechey Mobius Network Solutions


mobiusnz

457 posts

Ultimate Geek


  #1798452 12-Jun-2017 13:14
Send private message

mobiusnz:

 

As I said - I used a simple SMTP mail client on my pc and then the same client on a customers server who is with spark and smtp.clear.net.nz accepted both emails without Authentication and without the domains being managed by Vodafone/Clear

 

 

The problem is an ISP's smtp server should only relay outbound email from a connection on their own network - smtp.clear.net.nz is accepting emails to be relayed outbound from other ISP networks - Yes rate limiting would stop me sending too much spam using the Open Relay but its still an Open Relay not a normal ISP Outbound Relay for their clients.

 

 





Matt Beechey Mobius Network Solutions


antoniosk
2358 posts

Uber Geek

ID Verified
Trusted
Lifetime subscriber

  #1798456 12-Jun-2017 13:22
Send private message

mobiusnz:

 

mobiusnz:

 

As I said - I used a simple SMTP mail client on my pc and then the same client on a customers server who is with spark and smtp.clear.net.nz accepted both emails without Authentication and without the domains being managed by Vodafone/Clear

 

 

The problem is an ISP's smtp server should only relay outbound email from a connection on their own network - smtp.clear.net.nz is accepting emails to be relayed outbound from other ISP networks - Yes rate limiting would stop me sending too much spam using the Open Relay but its still an Open Relay not a normal ISP Outbound Relay for their clients.

 

 

 

 

As I recall these controls were put in place years ago when I was in TCL.... wonder what's happened for the control to have been reset....





________

 

Antoniosk


timmmay
20589 posts

Uber Geek

Trusted
Lifetime subscriber

  #1798465 12-Jun-2017 13:34
Send private message

MXToolbox says it's an open relay.

 

ISP provided email...


 
 
 

Trade NZ and US shares and funds with Sharesies (affiliate link).
Coil
6614 posts

Uber Geek
Inactive user


  #1798475 12-Jun-2017 13:57
Send private message

Pretty sure its been like this for a wee while.
As i recall telstra customers had no issues with SMTP when switching to Vodafone! (Back when the merger drama was going down with split billing systems etc etc)


mobiusnz

457 posts

Ultimate Geek


  #1798547 12-Jun-2017 15:10
Send private message

Looks like things are afoot - Now it just drops the connection before you get a chance to send any email - I guess thats valid enough - Just IP ban anyone not on network.





Matt Beechey Mobius Network Solutions


Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.