ISM-0567

Email servers only relay emails destined for or originating from their domains (including subdomains).

Topic
Open relay email servers
Applicable to
all

History

Priority
should
Sep 2022
Email servers only relay emails destined for or originating from their domains (including subdomains).
xisting controls covering ‘domains’ were amended to ‘domains (including subdomains)’ to avoid confusion as to whether subdomains were in scope or out of scope for these controls.
Mar 2019
Email servers only relay emails destined for or originating from their domains.
Security control 0567 was reworded.
Feb 2019
Open email relaying is disabled such that email servers will only relay messages destined for their domains and those originating from inside the domain.
2015
Agencies must disable open email relaying so that email servers will only relay messagesdestined for their domains and those originating from inside the domain.
2010
Agencies should disable open email relaying so that email servers will only relay messages destined for theirdomains and those originating from inside the domain.
2008
Agencies should disable open email relaying so that email servers will only relay messages destined for the agency’s domain(s) and those originating from within the domain.