Great Circle Associates Firewalls
(November 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: sendmail-8.8.8
From: "Norman Widders" <winspace @ geko . net . au>
Organization: Paladin Corporation
Date: Thu, 27 Nov 1997 01:45:50 +1000 (GMT)
To: <Firewalls @ GreatCircle . COM>
Reply-to: <winspace @ geko . net . au>

re folks,

some sendmail goodies that i have collected, your mileage may vary
just my way of thanking those on this list for their help B)

# prevent people using the EXPN and VRFY commands
O PrivacyOptions=goaway


# to use tcp-wrappers and hosts.allow / hosts.deny, recompile after
# modifying the makefile in sendmail-8.8.8/src/Makefiles/Makefile.your-os
LIBS= -lwrap
ENVDEF= -DTCPWRAPPERS


/etc/hosts.allow
sendmail: .your.domain EXCEPT spam.net

/etc/hosts.deny
ALL: ALL

#remove the version number, obscurity 
O SmtpGreetingMessage=$j Mailer ; $b

# header rewriting replacing internal net with your domain-name
# we can also use tables and classes as appropriate
# where $j is your fully-qualified internal machine-name
# and $m is your domain name
S61
R$* < @ $j > $*   $@ $1 < @ $m > 


Oh and you may want to investigate (lobby for, roll-your-own) 
support for authenticated-SMTP and put a stop to mail-spoofing/faking.
Having written a client implementing it and tested it against
Netscape Messaging Server and MS-Exchange it appears we
finally have some solutions in the near future.


--
wheres my valium ?



Follow-Ups:
Indexed By Date Previous: NT RADIUS
From: "Esteban Vasquez" <esteban @ iamnet . com>
Next: Re: R: strong encryption for Europeans
From: Peter da Silva <peter @ baileynm . com>
Indexed By Thread Previous: Re: NT RADIUS
From: "Ted, the Mighty" <trw13614 @ kestrel . tamucc . edu>
Next: Re: sendmail-8.8.8
From: Fyodor <fygrave @ freenet . bishkek . su>

Google
 
Search Internet Search www.greatcircle.com