Local Relay patch for MS

Julian Field mailscanner at ecs.soton.ac.uk
Wed Feb 11 18:38:26 GMT 2004


At 18:28 11/02/2004, you wrote:
> >-----Original Message-----
> >Eek! Bad guy forges 1 header and you don't scan it as you trust the
> >headers. Great idea, that one. Only a marketing guy could have
> >thought of that :-( Even Microsoft don't write code that is that broken...
>
>Augh.  I'm wounded to the quick. <g>
>
>It's really not all that bad because everybody's header line is different.
>The spammer isn't going to know 40,000 different headers and custom tailor
>his output to each.  A header that says "X-CBJ-MailScanner: Found to be
>clean" isn't going to get by a server that's looking for "X-ECS-MailScanner:
>Found to be clean" or vice versa.
>
>YMMV...

Too right it will V. The spammers can easily discover your header setting.
Security by obscurity, never going to work.
--
Julian Field
www.MailScanner.info
Professional Support Services at www.MailScanner.biz
MailScanner thanks transtec Computers for their support
PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654



More information about the MailScanner mailing list