> >Firstly, the current SMTP > > specification does not require domains to be canonicalized. Secondly, > > qmail should use an MX query not an ANY query, since it is looking up a > > mail domain not performing DNS diagnostics. Thirdly, it uses a 512 byte > > buffer which is too small, and it has no provision for dealing with > > truncated replies. > > A modern qmail like Spamcontrol for example is patched to be compliant > with the new RFCs and larger replies. > > So hopefully there aren't any servers still going and doing this any > more then.
If you believe this I have a nice piece of Florida swamp to sell you. There are *lots* of old, unmaintained/unpatched qmail systems out there, doing ANY queries with small query buffers etc. > An old qmail might still be secure but incompliant with some > modern systems but an old sendmail would be a zombie on acid. An old unpatched qmail might be secure - but it would also be incapable of delivering some email. Steinar Haug, Nethelp consulting, [email protected] _______________________________________________ Unbound-users mailing list [email protected] http://unbound.nlnetlabs.nl/mailman/listinfo/unbound-users
