Sam writes:
> I still haven't seen the confirmation that this is what postfix is doing,
> and I think we should wait until there's an authoritative confirmation.
> If it turns out to be true, I find it to be incredibly dumb.

Evidently it is true. IBM Spam Mailer feature list so far:

   * relaying from unauthorized hosts anywhere on the Internet, if the
     system administrator falls into the trap of configuring relay
     ``control'' by name; and

   * relaying from unauthorized nearby hosts, by default.

On the bright side, if a local user notices the system slowing down, he
can monitor the drop directory, decide that it's probably a spammer, and
destroy all new messages, without bothering to wake up the sysadmin.
``It's not a security disaster; it's an anti-spam feature!''

---Dan

Reply via email to