샌드메일 로그인데요.. 이 내용들 도저히 뭔지 모르겠습니다.
글쓴이: icristi / 작성시간: 목, 2004/05/06 - 8:54오전
May 6 08:48:30 estpop sm-mta[21742]: i45NmUEh021742: from=<0002934583@doumsoft.co.kr>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[211.49.96.193] May 6 08:48:30 estpop sm-mta[21744]: i45NmUEh021744: <abcsdream@mydomain.com>... User unknown May 6 08:48:30 estpop sm-mta[20974]: i45NjwEh020974: ruleset=check_mail, arg1=<mssupport@nets.net.pk>, relay=[211.47.92.208], reject=451 4.1.8 Domain of sender address mssupport@nets.net.pk does not resolve May 6 08:48:30 estpop sm-mta[20974]: i45NjwEh020974: from=<mssupport@nets.net.pk>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[211.47.92.208] May 6 08:48:30 estpop sm-mta[21744]: i45NmUEh021744: lost input channel from [218.144.200.5] to MTA after rcpt May 6 08:48:30 estpop sm-mta[21744]: i45NmUEh021744: from=<edu@scout.co.kr>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[218.144.200.5] May 6 08:48:30 estpop sm-mta[21761]: i45NmUEh021761: <abczip@mydomain.com>... User unknown May 6 08:48:30 estpop sm-mta[21761]: i45NmUEh021761: lost input channel from [211.202.121.51] to MTA after rcpt May 6 08:48:30 estpop sm-mta[21761]: i45NmUEh021761: from=<media3master@hanmail.net>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[211.202.121.51] May 6 08:48:31 estpop sm-mta[18279]: i45NahGr018279: from=<jhjhjhl@yahoo.co.kr>, size=41919, class=0, nrcpts=1, msgid=<200404260249.i3Q2npnE010332@mail.mydomain.com>, proto=ESMTP, daemon=MTA, relay=mail.mydomain.com [218.232.117.10] May 6 08:48:31 estpop sm-mta[21764]: i45NahGr018279: to=<abctools@mydomain.com>, delay=00:00:00, xdelay=00:00:00, mailer=locabc, pri=72131, dsn=2.0.0, stat=Sent May 6 08:48:31 estpop sm-mta[18279]: i45NahGt018279: <abczip@mydomain.com>... User unknown May 6 08:48:31 estpop sm-mta[18279]: i45NahGt018279: from=<whminer@news.hani.co.kr>, size=41924, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=mail.mydomain.com [218.232.117.10] May 6 08:48:31 estpop sm-mta[21767]: i45NmVEh021767: <abcsdream@mydomain.com>... User unknown May 6 08:48:31 estpop sm-mta[21767]: i45NmVEh021767: lost input channel from [219.241.93.182] to MTA after rcpt May 6 08:48:31 estpop sm-mta[21767]: i45NmVEh021767: from=<jetaudio@cowon.com>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[219.241.93.182] May 6 08:48:31 estpop sm-mta[21746]: i45NmVEh021746: <abczip@mydomain.com>... User unknown May 6 08:48:31 estpop sm-mta[21746]: i45NmVEh021746: lost input channel from [218.144.200.5] to MTA after rcpt May 6 08:48:31 estpop sm-mta[21746]: i45NmVEh021746: from=<daumadmaster@hanmail.net>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[218.144.200.5] May 6 08:48:32 estpop ipop3d[21768]: pop3 service init from 218.232.117.127 May 6 08:48:32 estpop sm-mta[20591]: i45NivFq020591: <abcsdream@mydomain.com>... User unknown May 6 08:48:32 estpop sm-mta[20591]: i45NivFq020591: from=<jhb00@lycos.co.kr>, size=41930, class=0, nrcpts=0, bodytype=8BITMIME, proto=ESMTP, daemon=MTA, relay=mail.mydomain.com [218.232.117.10] May 6 08:48:32 estpop ipop3d[21768]: Login user=pretty host=[218.232.117.127] nmsgs=0/0 May 6 08:48:32 estpop ipop3d[21768]: Logout user=pretty host=[218.232.117.127] nmsgs=0 ndele=0 May 6 08:48:32 estpop sm-mta[21770]: i45NmWEi021770: <abcsdream@mydomain.com>... User unknown May 6 08:48:32 estpop sm-mta[21770]: i45NmWEi021770: lost input channel from [166.104.64.32] to MTA after rcpt May 6 08:48:32 estpop sm-mta[21770]: i45NmWEi021770: from=<jjs754i@hanmail.net>, size=0, class=0, nrcpts=0, proto=SMTP, daemon=MTA, relay=[166.104.64.32] May 6 08:48:32 estpop sm-mta[21771]: i45NmWEi021771: <abczip@mydomain.com>... User unknown May 6 08:48:32 estpop sm-mta[21771]: i45NmWEi021771: lost input channel from [166.104.64.32] to MTA after rcpt May 6 08:48:32 estpop sm-mta[21771]: i45NmWEi021771: from=<abcsdream@mydomain.com>, size=0, class=0, nrcpts=0, proto=SMTP, daemon=MTA, relay=[166.104.64.32] May 6 08:48:32 estpop sm-mta[21753]: i45NmWEh021753: <abcsdream@mydomain.com>... User unknown May 6 08:48:32 estpop sm-mta[21753]: i45NmWEh021753: lost input channel from [203.249.26.195] to MTA after rcpt May 6 08:48:32 estpop sm-mta[21753]: i45NmWEh021753: from=<austria@msdirectservices.com>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[203.249.26.195] May 6 08:48:33 estpop sm-mta[21754]: i45NmXEh021754: [61.72.63.15] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA May 6 08:48:33 estpop sm-mta[21774]: i45NmXEh021774: <abczip@mydomain.com>... User unknown May 6 08:48:33 estpop sm-mta[21774]: i45NmXEh021774: lost input channel from [211.51.151.152] to MTA after rcpt May 6 08:48:33 estpop sm-mta[21774]: i45NmXEh021774: from=<scriptx@meadroid.com>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[211.51.151.152] May 6 08:48:33 estpop sm-mta[21756]: i45NmXEh021756: <abczip@mydomain.com>... User unknown May 6 08:48:33 estpop sm-mta[21756]: i45NmXEh021756: from=<06796@mail.kookmin.co.kr>, size=0, class=0, nrcpts=0, proto=SMTP, daemon=MTA, relay=[210.124.124.26] May 6 08:48:33 estpop sm-mta[21501]: i45NliEx021501: <abcsdream@mydomain.com>... User unknown May 6 08:48:33 estpop sm-mta[21501]: i45NliEx021501: from=<bug@rylonline.com>, size=41930, class=0, nrcpts=0, bodytype=8BITMIME, proto=ESMTP, daemon=MTA, relay=mail.mydomain.com [218.232.117.10] May 6 08:48:33 estpop sm-mta[21775]: i45NmXEh021775: <abcsdream@mydomain.com>... User unknown May 6 08:48:33 estpop sm-mta[21775]: i45NmXEh021775: lost input channel from [211.51.151.152] to MTA after rcpt May 6 08:48:33 estpop sm-mta[21775]: i45NmXEh021775: from=<3dinsoon00@hanmail.net>, size=0, class=0, nrcpts=0, proto=ESMTP, daemon=MTA, relay=[211.51.151.152]
위의 텍스트는 회사 메일서버에 sendmail의 최근 로그입니다. (저희회사 도메인은 mydomain.com이라 가정할게요)
그런데 User unkown이 유독 많이 보이는데...
이유가 무엇일까요....? 저희 회사 도메인을 타겟으로 불특정한 아이디에
스팸메일이 대량 살포되는 이유일까요?
저희 도메인까지는 들어왔는데 마지막으로 일치하는 유저가 없다는 뜻 맞나요?
그리구 lost input channel from [219.241.93.182] to MTA after rcpt
이라는 뜻은 무엇을 의미하는지 궁금합니다.
마지막으로 [relay]의 주소는 어떤의미에서의 relay인지 모르겠습니다.
경유되어진 주소라고 생각하면 될까요?
책을 봐도 로그에 대한 내용은 잘 안나와있네요
고수님들의 많은 답변 부탁드려요~
Forums:
댓글 달기