At 06:16 PM 8/14/2001 +0800, Miguel A.L. Paraz wrote:
Migs is right here.
>Sorry, that is the only way - your MTA has to do body checks because
>there's nothing in the MAIL FROM: or RCPT TO: that indicates it's Sircam.
Or maybe you can use an IDS, Snort to check in/out packets for SirCam.
>Perhaps Linux has - or someone (from PLUG?) would code - a way to intercept
>and drop packets based in content. Dropping the TCP packet containing
>"Hi.." whatever and sending a RST should kill it, no? Any iptables hackers?
---
Reynald I. Ngo
[EMAIL PROTECTED]
_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]
To subscribe to the Linux Newbies' List: send "subscribe" in the body to
[EMAIL PROTECTED]