Dan,

You're opening up a real potential for DoSing the firewall if you have an
especially busy Exchange server that gets hit by some mass mailer worm.  I
would rather have a separate instance of clamav running on my postfix (or
whatever MTA you choose to love) box.

-Gary

-----Original Message-----
From: Dan Swartzendruber [mailto:[EMAIL PROTECTED]
Sent: Friday, September 23, 2005 5:12 PM
To: [email protected]
Subject: [pfSense Support] antivirus and etc



It seems to me that if someone is going to port clamav as a package,
please make sure that clamd can be run as a TCP
daemon.  Since  clamav would need to be running for any kind of squid
proxy to scan incoming pages, it could just as easily be available to
someone running a mail server behind the pfsense.  Currently, for
example, I'm running postfix on a freebsd server, with clamav.  If
clamav were running on the pfense (for squid), I could point my MTA
at the pfsense LAN IP and not run it on the mail server.  Conversely,
of course, if whatever squid redirector can use a network-enabled
virus scanner, I could do it the other way around, and  leverage my
already running clamav on my Freebsd server.  Comments?


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to