OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [discuss] Apache2 proxy open relay

From: Martin Fahrendorf (fahrendorfhelix-gmbh.net)
Date: Wed Oct 22 2003 - 03:25:44 CDT


Am Mittwoch, 22. Oktober 2003 10:15 schrieb Matti Airas:
> On Wed, 2003-10-22 at 08:01, Martin Fahrendorf wrote:
> > Yep, that is known. you can disable this in postfix by setting
> >
> > smtpd_data_restrictions = reject_unauth_pipelining
> >
> > in main.cf.
>
> Thanks for the information. I wonder do you have any pointers to
> share about the matter? Our lab server is running Red Hat and
> sendmail, and I'd like to be able to give our admin information how
> to secure it against such attacks as well.

I'm sorry, I don't know sendmail. You can read everything about postfix
in the postfix mailing list (that is where I have
reject_unauth_pipelinig from).

I think it is a good choice to replace sendmail by postfix (if possible
of course).

>
> Cheers,
>
> m.

Martin
--
------------------------------------------------------------
H E L I X Gesellschaft für Software & Engineering mbH
------------------------------------------------------------
Hanauer Landstrasse 52 Telefon (069) 4789 35-30
D-60314 Frankfurt am Main Telefax (069) 4789 35-44
------------------------------------------------------------
http://www.helix-gmbh.net infohelix-gmbh.net
------------------------------------------------------------

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQA/lj8KBG198cnayKQRArSpAKCrDQq9z2SD15f8uRV+//LvRNnlxACeIAfS
0gzjrawK1PKMdnrDYbac8LI=
=PAhA
-----END PGP SIGNATURE-----