Hi Ricardo/All,
On 2015-12-18 Fri 20:20 PM |, Craig Skinner wrote:
> Hi!
>
> FYI;- I've noticed spamd & spamlogd open their high ports as root.
>
> These pf rules work, changing to 'user _spamd' doesn't:
>
> pass in on $ext_if inet proto udp \
> from $ext_if:network port > 1023 \
>
Hi!
FYI;- I've noticed spamd & spamlogd open their high ports as root.
These pf rules work, changing to 'user _spamd' doesn't:
pass in on $ext_if inet proto udp \
from $ext_if:network port > 1023 \
to $ext_if:0 port spamd-sync \
user root
pass out on $ext_if inet proto u