I have been beefing up my security in Majordomo 1.94.5. I am using sendmail
8.12.9. The technique of using sendmail virtusertable is working well - too
well. All messages are being blocked due to unknown user. Here is the
virtusertable, aliases, bounce email, and Sendmail log entries. When I go
back to no virtusertable, all is well except I can post to the outgoing list
directly (I do have restrict post set to the list file itself so only list
members can post.)
test-SECRET@lists.collaborative.org error:nouser User unknown
wmass-tech-SECRET@lists.collaborative.org error:nouser User unknown
video-learn-tech-SECRET@lists.collaborative.org error:nouser User
unknown
hec-db-users-SECRET@lists.collaborative.org error:nouser User unknown
########################################################################
########################################
# TEST lists
########################################################################
########################################
test: "|/usr/libexec/wrapper resend -l test
test-SECRET,nobody"
test-SECRET: :include:/usr/local/majordomo/lists/test,
"| /usr/libexec/wrapper digest -R -C -l test-digest
test-digest-SECRET" ,
"| /usr/libexec/wrapper archive2.pl -a -d -f
/usr/local/majordomo/archives/test/test.archive"
owner-test: jheffern@rcn.com
owner-test-SECRET: owner-test
test-request: "|/usr/libexec/wrapper request-answer test"
test-approval: jheffern@rcn.com
test-digest: test
test-digest-SECRET: :include:/usr/local/majordomo/lists/test-digest
test-digest-request: "/usr/libexc/wrapper request-answer test-digest"
test-digest-approval: test-approval
owner-test-digest: owner-test
owner-test-digest-SECRET: owner-test
The original message was received at Fri, 3 Oct 2003 10:52:33 -0400 (EDT)
from root@localhost
----- The following addresses had permanent fatal errors -----
test-SECRET
(reason: 553 5.3.0 <test-SECRET@lists.collaborative.org>... User
unknown)
(expanded from: test-SECRET)
----- Transcript of session follows -----
... while talking to localhost:
>>> DATA
<<< 553 5.3.0 <test-SECRET@lists.collaborative.org>... User unknown
550 5.1.1 test-SECRET... User unknown
Reporting-MTA: dns; lists.collaborative.org
Arrival-Date: Fri, 3 Oct 2003 10:52:33 -0400 (EDT)
Final-Recipient: RFC822; test-SECRET@lists.collaborative.org
Action: failed
Status: 5.3.0
Remote-MTA: DNS; localhost
Diagnostic-Code: SMTP; 553 5.3.0 <test-SECRET@lists.collaborative.org>...
User unknown
Last-Attempt-Date: Fri, 3 Oct 2003 10:52:33 -0400 (EDT)
Return-Path: <owner-test@lists.collaborative.org>
Received: (from root@localhost)
by lists.collaborative.org (8.12.9/8.12.2/Submit) id h93EqXYN017412;
Fri, 3 Oct 2003 10:52:33 -0400 (EDT)
Received: from mailserv.mecnet.net (mailserv.mecnet.net [216.20.10.4])
by lists.collaborative.org (8.12.9/8.12.9) with ESMTP id h93EqXGc017409
for <test@lists.collaborative.org>; Fri, 3 Oct 2003 10:52:33 -0400 (EDT)
Received: from [192.168.1.253] (HELO mailfilter2.mecnet.net)
by mailserv.mecnet.net (CommuniGate Pro SMTP 4.0.5)
with ESMTP id 16049981 for test@lists.collaborative.org; Fri, 03 Oct 2003
10:51:52 -0400
Received: from [216.20.87.2] (helo=collaborative.org)
by mailfilter2.mecnet.net with esmtp (Exim 4.12)
id 1A5RH0-0000NV-00
for test@lists.collaborative.org; Fri, 03 Oct 2003 10:51:14 -0400
Date: Fri, 3 Oct 2003 10:51:18 -0400
Mime-Version: 1.0 (Apple Message framework v552)
Content-Type: text/plain; charset=US-ASCII; format=flowed
Subject: should work - 2 copies- 01
From: John Heffernan <jheffernan@collaborative.org>
To: testList testList <test@lists.collaborative.org>
Content-Transfer-Encoding: 7bit
Message-Id: <0BC3B2CA-F5B1-11D7-904E-000A9578CD08@collaborative.org>
X-Mailer: Apple Mail (2.552)
X-Spam-Score: -2.1 (--)
X-Scanner: exiscan for exim4 (http://duncanthrax.net/exiscan/)
*1A5RH0-0000NV-00*7/wQjQA..zw*
Sender: owner-test@lists.collaborative.org
Precedence: bulk
Oct 3 10:52:33 lists sendmail[17409]: h93EqXGc017409:
from=<jheffernan@collaborative.org>, size=936, class=0, nrcpts=1,
msgid=<0BC3B2CA-F5B1-11D7-904E-000A9578CD08@collaborative.org>,
proto=ESMTP, daemon=MTA, relay=mailserv.mecnet.net [216.20.10.4]
Oct 3 10:52:33 lists sendmail[17410]: h93EqXGc017409: h93EqXGc017410:
clone: owner=jheffern@rcn.com
Oct 3 10:52:33 lists sendmail[17412]: h93EqXYN017412:
from=owner-test@lists.collaborative.org, size=1214, class=-60,
nrcpts=2,
msgid=<0BC3B2CA-F5B1-11D7-904E-000A9578CD08@collaborative.org>,
relay=root@localhost
Oct 3 10:52:33 lists sendmail[17413]: h93EqXGc017413:
<test-SECRET@lists.collaborative.org>... User unknown
Oct 3 10:52:33 lists sendmail[17412]: h93EqXYN017412: to=test-SECRET,
delay=00:00:00, xdelay=00:00:00, mailer=relay, pri=169210,
relay=localhost [127.0.0.1], dsn=5.3.0, stat=User unknown
Oct 3 10:52:33 lists sendmail[17413]: h93EqXGc017413:
from=<owner-test@lists.collaborative.org>, size=1354, class=-60,
nrcpts=1,
msgid=<0BC3B2CA-F5B1-11D7-904E-000A9578CD08@collaborative.org>,
proto=ESMTP, daemon=MTA, relay=localhost [127.0.0.1]
Oct 3 10:52:33 lists sendmail[17412]: h93EqXYN017412: to=nobody,
delay=00:00:00, xdelay=00:00:00, mailer=relay, pri=169210,
relay=localhost [127.0.0.1], dsn=2.0.0, stat=Sent (h93EqXGc017413
Message accepted for delivery)
Oct 3 10:52:33 lists sendmail[17412]: h93EqXYN017412: h93EqXYO017412:
DSN: User unknown
Oct 3 10:52:33 lists sendmail[17414]: h93EqXGc017413: to=/dev/null,
ctladdr=root (0/0), delay=00:00:00, xdelay=00:00:00, mailer=*file*,
pri=139565, dsn=2.0.0, stat=Sent
Oct 3 10:52:33 lists sendmail[17413]: h93EqXGe017413: from=<>,
size=3155, class=0, nrcpts=1,
msgid=<200310031452.h93EqXYO017412@lists.collaborative.org>,
proto=ESMTP, daemon=MTA, relay=localhost [127.0.0.1]
Oct 3 10:52:33 lists sendmail[17412]: h93EqXYO017412:
to=owner-test@lists.collaborative.org, delay=00:00:00, xdelay=00:00:00,
mailer=relay, pri=30000, relay=localhost [127.0.0.1], dsn=2.0.0,
stat=Sent (h93EqXGe017413 Message accepted for delivery)
Oct 3 10:52:33 lists sendmail[17410]: h93EqXGc017410:
to="|/usr/libexec/wrapper resend -l test test-SECRET,nobody",
ctladdr=<test@lists.collaborative.org> (1/0), delay=00:00:00,
xdelay=00:00:00, mailer=prog, pri=31157, dsn=2.0.0, stat=Sent
Oct 3 10:52:34 lists sendmail[17415]: h93EqXGe017413:
to=jheffern@rcn.com, delay=00:00:01, xdelay=00:00:01, mailer=esmtp,
pri=33378, relay=mx.mail.rcn.net. [207.172.4.98], dsn=2.0.0, stat=Sent
(OK id=1A5RH7-0001yq-00@mx04.mrf.mail.rcn.net)
-- John Heffernan
-- Educational Technology Consultant
-- Hampshire Educational Collaborative
-- 97 Hawley Street
-- Northampton, MA 01060-2327
-- 413.586.4900 x144 (tel)
-- 413.586-0180 (fax)
-- http://learn.collaborative.org/
Follow-Ups:
|
|