OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Reject a message in reply to end of data command.

From: Adrian von Bidder (avbidderfortytwo.ch)
Date: Fri Sep 19 2003 - 05:29:49 CDT


On Thursday 18 September 2003 22:00, Victor Duchovni wrote:
> On Thu, 18 Sep 2003, Bartosz Jozwiak wrote:
> > Is it possible to reject e-mail message that contain a virus, in reply to
> > end of DATA command ?
> > Right now my postfix and amavis-new is accepting message and then
> > rejecting it by sending mailer-deamon message.
>
> It is not possible, but not a good idea. Either clean and deliver or
> DISCARD. The envelope sender is almost forged, so it is anti-social to
> reject malware.

Strongly disagree.

Discarding mail at the MTA level is very, very dangerous. As soon as you have
a bigger userbase, you will run into false posivitves sooner and later - and
there's nothing worse than mail that disappears without any traces (from the
view of the users).

cheers
-- vbi

--
NOTE: my email addresses in usenet postings change frequently!

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iKcEABECAGcFAj9q2q5gGmh0dHA6Ly9mb3J0eXR3by5jaC9sZWdhbC9ncGcvZW1h
aWwuMjAwMjA4MjI/dmVyc2lvbj0xLjUmbWQ1c3VtPTVkZmY4NjhkMTE4NDMyNzYw
NzFiMjVlYjcwMDZkYTNlAAoJECqqZti935l6BCIAnRr4M+LsFmOLrw/pTJx4l+dk
6x17AJwIT7C9iolo0bUrScJbrwg2QWrLdA==
=Kv/k
-----END PGP SIGNATURE-----