Relaying in MDaemon

From: Arvel Hathcock (arvelat_private)
Date: Fri Aug 17 2001 - 08:49:04 PDT

  • Next message: Alun Jones: "Re: MS-DOS Filename/Directory Vulnerability"

    > It seems like that Mdaemon SMTP server can be used for
    > unauthorized relaying. Mail can be relayed when sent
    > "FROM or TO known user", it means that mail sent "from"
    > the account of one of served domains always can be relayed.
    > There is no problem to specify any "from" user, for
    > example, system account "mdaemon".
    
    Please read the manual.  There are ways of verifying addresses.  Also, the
    default installation does not allow mail relaying.  You have enabled it
    yourself.  There is a switch setting that prevents this sort of thing and it
    is set by default.
    
    Arvel Hathcock
    CEO, Alt-N Technologies Ltd.
    http://www.altn.com
    ============================
    http://www.mdaemon.com
    http://www.relayfax.com
    ============================
    



    This archive was generated by hypermail 2b30 : Fri Aug 17 2001 - 09:01:12 PDT