Am 19.02.2015 um 15:47 schrieb Dave Funk:
On Thu, 19 Feb 2015, Reindl Harald wrote:

well, that can you achieve directly on the MTA but that won't help in
case of "emails containing MS office attachments with a Malicious VB
script"

cat /etc/postfix/mime_header_checks.cf
/^Content-(?:Disposition|Type):(?:.*?;)? \s*(?:file)?name \s* =
\s*"?(.*?(\.|=2E)(386|acm|ade|adp|awx|ax|bas|bat|bin|cdf|chm|class|cmd|cnv|com|cpl|crt|csh|dll|dlo|drv|exe|hlp|hta|inf|ins|isp|jar|jse|lnk|mde|mdt|mdw|msc|msi|msp|mst|nws|ocx|ops|pcd|pif|pl|prf|rar|reg|scf|scr|script|sct|sh|shb|shm|shs|so|sys|tlb|vb|vbe|vbs|vbx|vxd|wiz|wll|wpc|wsc|wsf|wsh))(?:\?=)?"?\s*(;|$)/x
REJECT Attachment Blocked (Executables And RAR-Files Not Allowed) "$1"

(.rar because ClamAV can't scan the content on Fedora)

Is that a politically inspired limitation?

you can call it politically i blame the authors like the license change of JSON (https://bugs.php.net/bug.php?id=63520)
https://fedoraproject.org/wiki/Licensing:Unrar?rd=Licensing/Unrar

If you build ClamAV from source it can scan RAR

i build already enough packages and my day has only 24 hours




Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to