Date: Sun, 28 Sep 1997 04:16:26 +0100 From: Brian Somers <brian@awfulhak.org> To: Eivind Eklund <perhaps@yes.no> Cc: Brian Somers <brian@awfulhak.org>, bruce@zuhause.mn.org, freebsd-questions@FreeBSD.ORG Subject: Re: sendmail and ppp -auto Message-ID: <199709280316.EAA09001@awfulhak.demon.co.uk> In-Reply-To: Your message of "Sun, 28 Sep 1997 01:33:57 %2B0200." <199709272333.BAA13407@bitbox.follo.net>
next in thread | previous in thread | raw e-mail | index | archive | help
> > 
> > > I just started using ppp -auto, and whenever sendmail starts up or I
> > > get any new mail, ppp connects to my ISP.  How do I trace this?  I
> > > don't know how.  Is there something I should add to my sendmail
> > > configuration? For that matter, how do I attach bpf0 to tun0, and where
> > > is documentation on setting up ipfilters to reject the packet sendmail
> > > is sending?  Would it help to set up a caching named?
> > 
> > There's a bit in the FAQ now (in the networking section - 10.7.9 
> > currently).
> > 
> > Essentially, you need to "set log +tcp/ip", determine the rogue 
> > program (sendmail in your case) and add a few lines to ppp.conf:
> > 
> >   set dfilter 1 deny udp src eq 25
> >   set dfilter 2 deny udp dst eq 25
> >   set dfilter 3 permit 0/0 0/0
> 
> Eh - this looks completely bogus to me.
> 
>    set dfilter 1 deny udp src eq 53
>    set dfilter 2 deny udp dst eq 53
>    set dfilter 3 permit 0/0 0/0
> 
> would be it, wouldn't it?  But - this denies all DNS requests the
> ability do dial out.  Not Good.  It is much better to fix sendmail
> (and Win95).
You're right of course - the rogue program is the resolver as used by 
sendmail, and if the person wants sendmail to auto-send stuff when it 
*really* has something to do, sendmail needs fixing (as you posted in 
answer to another question).
Of course you *could* add that Q. & A. to the FAQ in as a "why does 
ppp make a connection at boot time"..... *nudge*
> Eivind.
Cheers.
-- 
Brian <brian@Awfulhak.org>, <brian@FreeBSD.org>, <bri@OpenBSD.org>
      <http://www.Awfulhak.org>
Don't _EVER_ lose your sense of humour....
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199709280316.EAA09001>
