Re: [Mailman-Users] Updated view on Sendmail integration

2018-12-05 Thread Dmitri Maziuk via Mailman-Users
On Wed, 5 Dec 2018 10:28:53 +0900 "Stephen J. Turnbull" wrote: > Dmitri Maziuk via Mailman-Users writes: > > So basically unix user/group access model is wrong because sendmail > > is full of bugs? > > Please, Dmitri. All large software applications are full of bugs Yes, and then there's

Re: [Mailman-Users] Updated view on Sendmail integration

2018-12-04 Thread Stephen J. Turnbull
Dmitri Maziuk via Mailman-Users writes: > On Mon, 3 Dec 2018 10:30:53 -0500 > Jim Ziobro wrote: > ... > > Is the directory “/etc/mailman” group-writable only to support the > > creation of an aliases file?I would feel more confident if /etc/mailman > > was only writable by root. > > So

Re: [Mailman-Users] Updated view on Sendmail integration

2018-12-04 Thread Dmitri Maziuk via Mailman-Users
On Mon, 3 Dec 2018 10:30:53 -0500 Jim Ziobro wrote: ... > Is the directory “/etc/mailman” group-writable only to support the > creation of an aliases file?I would feel more confident if /etc/mailman > was only writable by root. So basically unix user/group access model is wrong because

Re: [Mailman-Users] Updated view on Sendmail integration

2018-12-04 Thread Mark Sapiro
On 12/3/18 7:30 AM, Jim Ziobro wrote: > > Another approach was mm-handler.Mm-handler handles the security bridge > by calling back Mailman after it has switched to UID/GID: > mailman/mailman.An elegant solution.The v3 version > optionally allows mail not

[Mailman-Users] Updated view on Sendmail integration

2018-12-04 Thread Jim Ziobro
I am still fairly new to Mailman but I have been a long time Sendmail user.I like to know how things work.Partly out of security paranoia and partly out of curiosity I started hacking around the MTA interface. One of the things I now see is that Mailman depends on a group for access(vs.