>Don't run sendmail versions < 8.9.1, or if you do, run as suid
>non-root-user_with_no_shell, and run it in a non-daemon mode, ie sendmail
>-q15m.  Use tcpwrappers too.  It's sort of a firewall, but then again, if

running sendmail (for outgoing mail only) non-suid is relatively trivial.

chrism@yang:[1:0]:~ > ls -l /usr/sbin/sendmail
-rwx--s--x   1 root     mail      1863557 Aug  6  1997 /usr/sbin/sendmail*
chrism@yang:[2:0]:~ > ls -ld /var/spool/mqueue/
drwxrwx---   2 root     mail          512 Oct 21 16:40 /var/spool/mqueue//

never run in daemon mode unless you need to get mail.
---------------------------------------------------------------------------
Send administrative requests to [EMAIL PROTECTED]

Reply via email to