Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 12 Apr 1995 07:30:02 -0400 (EDT)
From:      Mark Hittinger <bugs@ns1.win.net>
To:        questions@FreeBSD.org
Subject:   Re: FreeBSD 2.0 sendmail insecure? (fwd)
Message-ID:  <199504121130.HAA18362@ns1.win.net>

next in thread | raw e-mail | index | archive | help
> From: Gary Palmer (FreeBSD/ARM Team) <gpalmer@freefall.cdrom.com>
> Sendmail 8.6.12 compiles out of the box on FreeBSD (after all, it's
> maintained by UCB - the people who wrote the origional BSD :-) ).
> 

Another option for sendmail which is sometimes overlooked is the use of
the TIS firewall kit pieces called "smap" and "smapd".

I have been running these since the identd thing.

Smap is a tiny smtp protocol engine that runs as uid "nobody" in a 
chrooted environment.  You can't do very much with it :-)

Smapd comes along later, verifies the message headers for politeness,
and then passes the message to sendmail.

Some sendmail policy wonks do not like it, but it seems to work.  It is
better than loosing sleep over what the next sendmail bug-o-the-month
will be.

Regards,

Mark Hittinger
bugs@win.net



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199504121130.HAA18362>