OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
FreeBSD Security Archives: Re: Sendmail options, what's more se

Re: Sendmail options, what's more secure?


Adam Laurie (adamalgroup.co.uk)
Wed, 03 Nov 1999 11:43:17 +0000


matt baker wrote:
>
> Hello,
>
> I'm currently setting up a firewall that's using FreeBSD 3.x, and
> sendmail 8.9.3.
> The machine itself doesn't need to receive any mail, but will be passing
> it onto several other machines internal to the firewall (2 nic card design).
>
> Given this setup, I was wondering about the merits of either:
>
> 1. Using the RunAsUser option, setting the mqueue directory to be owned
> by this user, and also setting /etc/mail/aliases and similar files to be
> also owned by this user or group writable. It's this later part that
> I'm not keen on.
>
> 2. Running sendmail as root, but chrooted to a certain area using the
> SafeFileEnvironment option. Does this mean I have to place the mqueue
> and other config files in this area also?

A popular alternative is qmail...

  http://www.qmail.org/

cheers,
Adam

--
Adam Laurie                   Tel: +44 (181) 742 0755
A.L. Digital Ltd.             Fax: +44 (181) 742 5995
Voysey House                  
Barley Mow Passage            http://www.aldigital.co.uk
London W4 4GB                 mailto:adamalgroup.co.uk
UNITED KINGDOM                PGP key on keyservers

To Unsubscribe: send mail to majordomoFreeBSD.org with "unsubscribe freebsd-security" in the body of the message



This archive was generated by hypermail 2.0b3 on Wed Nov 03 1999 - 05:44:26 CST