OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Florin (florinmandrakesoft.com)
Date: Tue Jan 15 2002 - 02:57:02 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Denis HAVLIK <denismandrakesoft.com> writes:

    > Folks,
    >
    > Why don't we make a really simple anti-virus program, which simply rejects
    > all .doc, .exe, etc attachements? I for one would love to have such a
    > possibility in postfix configuration. Something like:
    >
    > ***********************************************************************
    > Do yo want to bounce all emails with dangerous attachements(*) back to
    > sender? (Y/N)
    >
    > (*) .exe, .doc, (give a full list here) attachements are known as
    > source of computer viruses, and therefore potentially dangerous. While
    > many anti-virus programs exist, which scan such attachements, the
    > simplest way to make sure no viruses go trought is to deny ALL
    > attachements of these types. While very efficient, this solution may make
    > some of your users really mad at you, so use with care.
    > *************************************************************************
    >
    > WDYT?
    >
    > Denis

    Hello there,

    you're talking here about attachements which implies mails in some sort.
    We could add a postfix configuration in order to scan the mails ... but
    this is rather a posfix issue not a firewall one.

    Another idea would be to add something to squid so that all the downloaded
    files will be scanned before downloading. This concerns direct downloading
    through a web browser.

    I had a short look at viralator: http://viralator.loddington.com/

    but didn't dig too much ... yet.

    sincerely,

    -- 
    Florin			http://www.mandrakesoft.com
    

    For help, email discuss-helpmandrakesecure.net; to unsubscribe send a message to discuss-unsubscribemandrakesecure.net. To visit MandrakeSecure, go to http://www.mandrakesecure.net/.