David Mehler via Postfix-users:
> Hello,
> 
> Thanks everyone for the feedback.
> 
> I've commented out proxy_read_maps which seems to have done it,
> postfix/local isn't trying to get in to things and aliases are
> working, though I'm not sure if the perms there are right, 755
> root:root on /etc/postfix/sql and 644 root:root on the various .cf
> files.

To prevent privilege escalation: 

    / 

    /etc

    /etc/postfix

    all /etc/postfix contents

must be OWNED by root, and NOT WRITABLE by other users.

        Wietse
_______________________________________________
Postfix-users mailing list -- postfix-users@postfix.org
To unsubscribe send an email to postfix-users-le...@postfix.org

Reply via email to