Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 03 Nov 1999 10:49:42 +0100
From:      matt baker <matt@sevenone.com>
To:        freebsd-security@freebsd.org
Subject:   Sendmail options, what's more secure?
Message-ID:  <3820051F.B2BAAF89@sevenone.com>

next in thread | raw e-mail | index | archive | help
Hello,

I'm currently setting up a firewall that's using FreeBSD 3.x, and
sendmail 8.9.3.
The machine itself doesn't need to receive any mail, but will be passing
it onto several other machines internal to the firewall (2 nic card design).

Given this setup, I was wondering about the merits of either:

1. Using the RunAsUser option, setting the mqueue directory to be owned
by this user, and also setting /etc/mail/aliases and similar files to be
also owned by this user or group writable.  It's this later part that
I'm not keen on.

2. Running sendmail as root, but chrooted to a certain area using the
SafeFileEnvironment option.  Does this mean I have to place the mqueue
and other config files in this area also?


thanks for any thoughts,


Matt Baker
----
matt@sevenone.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3820051F.B2BAAF89>