From owner-freebsd-questions@FreeBSD.ORG Fri Jun 2 10:45:06 2006 Return-Path: X-Original-To: freebsd-questions@FreeBSD.org Delivered-To: freebsd-questions@FreeBSD.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 9F39316A437 for ; Fri, 2 Jun 2006 10:45:06 +0000 (UTC) (envelope-from robin@reportlab.com) Received: from relay03.pair.com (relay03.pair.com [209.68.5.17]) by mx1.FreeBSD.org (Postfix) with SMTP id 0FE2643D55 for ; Fri, 2 Jun 2006 10:45:05 +0000 (GMT) (envelope-from robin@reportlab.com) Received: (qmail 45623 invoked from network); 2 Jun 2006 10:45:04 -0000 Received: from unknown (HELO ?192.168.0.3?) (unknown) by unknown with SMTP; 2 Jun 2006 10:45:04 -0000 X-pair-Authenticated: 217.196.247.135 Message-ID: <448016B1.4000902@chamonix.reportlab.co.uk> Date: Fri, 02 Jun 2006 11:45:05 +0100 From: Robin Becker User-Agent: Thunderbird 1.5.0.2 (Windows/20060308) MIME-Version: 1.0 To: Nils Vogels References: <44800F1D.50100@chamonix.reportlab.co.uk> <20060602121927.vuy4bm9haasw80cw@www.x-cons.nl> In-Reply-To: <20060602121927.vuy4bm9haasw80cw@www.x-cons.nl> Content-Type: text/plain; charset=ISO-8859-15; format=flowed Content-Transfer-Encoding: 7bit Cc: freebsd-questions@FreeBSD.org Subject: Re: qpopper for root X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 02 Jun 2006 10:45:16 -0000 Nils Vogels wrote: > On Fri, 02 Jun 2006 11:12:45 +0100, Robin Becker > wrote: > >> I am trying to use qpopper for delivering mail to my PC based mail >> client from a freeBSD 6.0 release system >> >> -ERR [AUTH] "root": access denied. >> > > Reading mail as root remotely is a Bad Idea (tm), because of > possible vulnerabilities. > > Try using your aliases(5) to redirect root mail to a user account instead. > > Oh, and don't log in as root either ;-) > > Greets, > > Nils. > > cleverly answered before my clarification :) This is within our firewall only. SSHD password login for the machine is off So I can log in only via the console or SSH with pre-shared keys. I have heard some reports about qpopper and security, but is it really so bad? -- Robin Becker