Hello,

We're running mailman 2.

Quite a few script kiddies and other idiots have figured out that they can use 
our mailman installation to annoy people. They bypass the subscribe page 
directly, and run cgi-bin/subscribe directly - many, many times.

We fixed the problem by removing the appropriate executable permission from 
cgi-bin/subscribe and rewriting the list info page to handle subscriptions 
differently. (We removed the Subscribe fields and button.)

While this works, it's inelegant and a bit convoluted.

Is there another way to prevent this, and leave the default info page intact?

Thanks.

::Jack


------------------------------------------------------
Mailman-Users mailing list -- mailman-users@python.org
To unsubscribe send an email to mailman-users-le...@python.org
https://mail.python.org/mailman3/lists/mailman-users.python.org/
Mailman FAQ: http://wiki.list.org/x/AgA3
Security Policy: http://wiki.list.org/x/QIA9
Searchable Archives: https://www.mail-archive.com/mailman-users@python.org/
    https://mail.python.org/archives/list/mailman-users@python.org/
Member address: arch...@mail-archive.com

Reply via email to