At 3:24 PM -0200 2006-05-16, Manlio Perillo wrote:

>>>   The list is moderated but, since it is a nuisance to have to approve all
>>>   messages, I'm thinking to remove the moderation flag on the address used
>>>   by the script.
>>
>>      This is precisely what we do for several "commits" type lists that I
>>  run for the NTP Public Services Project.  Works fine for us.
>
>  Ok, but it is not secure.

        No, not perfectly secure.  Someone could spoof the sending 
address and get their post through to the whole list.

>  But, as I can see, it is the only solution.

        Unless you can get the commit notification process to add an 
"Approved: password" line to the headers of your message, or the 
first line of the message body, I don't see any way that the security 
could be further improved, at least as far as Mailman is concerned.

-- 
Brad Knowles, <[EMAIL PROTECTED]>

"Those who would give up essential Liberty, to purchase a little
temporary Safety, deserve neither Liberty nor Safety."

     -- Benjamin Franklin (1706-1790), reply of the Pennsylvania
     Assembly to the Governor, November 11, 1755

  LOPSA member since December 2005.  See <http://www.lopsa.org/>.
------------------------------------------------------
Mailman-Users mailing list
[email protected]
http://mail.python.org/mailman/listinfo/mailman-users
Mailman FAQ: http://www.python.org/cgi-bin/faqw-mm.py
Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/
Unsubscribe: 
http://mail.python.org/mailman/options/mailman-users/archive%40jab.org

Security Policy: 
http://www.python.org/cgi-bin/faqw-mm.py?req=show&amp;file=faq01.027.htp

Reply via email to