> --On Tuesday, March 04, 2008 12:30 PM -0800 Jo Rhett
> <[EMAIL PROTECTED]> wrote:
>
>> 1. Don't create backscatter aliases for subscribe/unsubscribe/etc by
>> default.  Nearly everyone uses web based signup.

On Mar 12, 2008, at 9:58 AM, Kenneth Porter wrote:
> Here's the list of valid actions from mm-handler:
>
> @ValidActions = qw(admin bounces confirm join leave
>                    owner request subscribe unsubscribe);
>
> Which ones should be left enabled?

In my experience, none of them.  I've got a 1k+ list server running  
without any of these actions enabled, and have never had a problem  
with it.
   (obviously you also have to patch the headers added to list e-mail  
to not reference these names)

Naturally, if you have someone who really does do list admin by e- 
mail (very rare) then you could leave one of these enabled for them.  
As long as an e-mail without any proper actions is dropped.

-- 
Jo Rhett
Net Consonance : consonant endings by net philanthropy, open source  
and other randomness


_______________________________________________
Mailman-Developers mailing list
Mailman-Developers@python.org
http://mail.python.org/mailman/listinfo/mailman-developers
Mailman FAQ: http://www.python.org/cgi-bin/faqw-mm.py
Searchable Archives: 
http://www.mail-archive.com/mailman-developers%40python.org/
Unsubscribe: 
http://mail.python.org/mailman/options/mailman-developers/archive%40jab.org

Security Policy: 
http://www.python.org/cgi-bin/faqw-mm.py?req=show&file=faq01.027.htp

Reply via email to