I know this is not exactly about SA, but I can't think of a better list to 
post this question and get a decent response.

I am sick of people uploading exploitable mail form scripts for spammers to 
exploit. I think the best solution is to stop this at the mail server 
level. I want to configure my mail server to relay to a restricted list of 
email addresses and reject everything else. Then it doesn't matter what 
exploitable script of the day my users upload. If their address is not on 
my relay list, the mail gets discarded.

I configured sendmail to check_rcpt but since the email is coming from a 
local user, it just goes ahead and relays the message no matter what 
rulesets I set up. I am willing to switch to another mail server if it's 
easier to achieve this. Has anyone done this before?

-r


----------------------------------------------------------------------------
                   Bringing you mounds of caffeinated joy
                      >>>     http://thinkgeek.com/sf    <<<

_______________________________________________
Spamassassin-talk mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/spamassassin-talk

Reply via email to