OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [discuss] Apache2 proxy open relay

From: Matti Airas (mairasiki.fi)
Date: Wed Oct 22 2003 - 03:15:45 CDT


On Wed, 2003-10-22 at 08:01, Martin Fahrendorf wrote:

> Yep, that is known. you can disable this in postfix by setting
>
> smtpd_data_restrictions = reject_unauth_pipelining
>
> in main.cf.

Thanks for the information. I wonder do you have any pointers to share
about the matter? Our lab server is running Red Hat and sendmail, and
I'd like to be able to give our admin information how to secure it
against such attacks as well.

Cheers,

m.