HP3000-L Archives

February 2005, Week 3

HP3000-L@RAVEN.UTC.EDU

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Art Bahrs <[log in to unmask]>
Reply To:
Date:
Wed, 16 Feb 2005 08:38:33 -0800
Content-Type:
text/plain
Parts/Attachments:
text/plain (86 lines)
Hi Larry and Mark :)
    The method of operation that Mark suggests is a very good and secure
way to do Sendmail mail.

     Schedule a job that fires up the sendmail daemon every 15 minutes and
then shuts it down after sending all the email that is queued up. This way
SMTP vulnerabilities (there are only a few ... yah right! hehe) are not
available to be exploited all the time... only when the daemon is actually
running.

     Also, before you say it.... You can have all those jobs that send off
emergency "HELP ME!" emails fire up and shut down the daemon when a
situation arises needing email to be sent immediately.

    Remember, an open email server is a great toy for the bad guys... :(
Also, your next audit will raise questions about sendmail running all the
time anyways... at least the auditor should!

Art "putting away the security pulpit now :) hehe" Bahrs

=======================================================
Art Bahrs, CISSP           Information Security          The Regence Group
(503) 553-1425              FAX (503) 553-1453



                "Mark Bixby"
                <[log in to unmask]
                g>                                                      To
                Sent by:               [log in to unmask]
                "HP-3000                                                cc
                Systems
                Discussion"                                        Subject
                <HP3000-L@RAVE         Re: [HP3000-L] what is this folder
                N.UTC.EDU>             for?


                02/16/2005
                06:23 AM


                Please respond
                      to
                 "Mark Bixby"
                <[log in to unmask]
                      g>
                |------------|
                | [ ] Secure |
                |     E-mail |
                |------------|





That directory is used when a local e3000 job or session attempts to send
e-mail via sendmail but the sendmail daemon job isn't running.  The mail
headers & body get stored as separate files in that directory; when the
sendmail daemon job subsequently starts up, the clientmqueue files get
moved to
the /var/spool/mqueue directory and queued for normal delivery.

- Mark B.

Larry Simonsen wrote:
> in looking at a backup listing i find that there is a large number of
> files in the folder /var/spool/clientmqueue/.  what is this folder for?
> does it get cleanedout regularly or is this empty files piling up
> somewhere?
--
[log in to unmask]
Remainder of .sig suppressed to conserve expensive California electrons...

* To join/leave the list, search archives, change list settings, *
* etc., please visit http://raven.utc.edu/archives/hp3000-l.html *




 =============================================================================
IMPORTANT NOTICE: This communication, including any attachment, contains information that may be confidential or privileged, and is intended solely for the entity or individual to whom it is addressed.  If you are not the intended recipient, you should delete this message and are hereby notified that any disclosure, copying, or distribution of this message is strictly prohibited.  Nothing in this email, including any attachment, is intended to be a legally binding signature.
 =============================================================================

* To join/leave the list, search archives, change list settings, *
* etc., please visit http://raven.utc.edu/archives/hp3000-l.html *

ATOM RSS1 RSS2