The static IP address my MTA (running Exchange 2013) is running on has been blacklisted by SPAMHAUS PBL.
This IP address range has been identified by Spamhaus as not meeting our policy for IP addresses permitted to deliver unauthenticated 'direct-to-mx' email to PBL users.
As I understand it, that means that Spamhaus has detected MSAs connectiong to my exchange server via SMTP port 25 instead of port 587. Is that correct?
Being that all the MSAs are either Outlook 2013 or Outlook for iOS, I don't see how any of those would be connecting over port 25.
Any help would be much appreciated.
Thanks
This usually means that the ip address that your server is using is listed as a dynamic in the spamhaus database. Just request an exclusion directly from them.
Its not possible that a 3rd party environment can detect how many connections users would have to your environment without that the 3rd party has access to your environment (or is part from the connection flow).
So the correct answer here is that your Exchange server is listed in the SpamHouse database with the reasons written in the SpamHouse FAQ:
As you outlined you aren´t using a Dynamic IP Address it might be a false positive as also mentioned by Symantec here. So you might wish to get in contact with Spamhouse directly and explain that issue and let them remove your system from the blacklist (via the SpamHouse Blocklist Removal Center) as explained here via: