Change IP Addresses Considered Local by iPlanet Messaging Server tcp_intranet

The iPlanet/SunONE Messaging Server message transfer agent (MTA) handles mail through different channels. One default channel, tcp_intranet, receives mail from the users considered local, on the local area network or Intranet. If a user does not authenticate during an SMTP session and is connecting from an IP address not considered local, the user will receive a 5.7.1 Relaying not allowed error message. This tech-recipe describes the configuration change which solves this problem.

The configuration change must be made to the mappings file in the imta/config directory under the messaging server root directory (referred to as MSGROOT in this recipe, for example /usr/iplanet/server5/msg-mail).

To add a single IP address to the tcp_intranet channel, add the following line to the MSGROOT/imta/mappings file in the section labeled INTERNAL_IP:

( $Y

The /32 represents the subnet mask and is the same as To add a class C network (, use the following line:

( $Y

In this example, anyone with an IP address of to can route mail through the mail server without authenticating. If you have a variable length subnet mask or a number of contiguous subnets, you can specify them with a single line. For example, to add anyone connecting from to, you can use the mappings line as follows:

( $Y

Once you have edited the file, restart the MTA with the following command:

MSGROOT/imsimta refresh

This command will rebuild the configuration files following an edit and restart the MTA.


