Mailscanner + Exim question

Jan-Peter Koopmann Jan-Peter.Koopmann at SECEIDOS.DE
Wed Mar 31 17:40:05 IST 2004


On Wednesday, March 31, 2004 5:58 PM Mark Warpool <mailto:Mark.Warpool at BENCHMARK-USA.COM> wrote:

> This is actually many domains.  If I were to exclude scanning
> for that domain, then wouldn't that allow a spammer to
> "spoof" an email address from those domains in order to bypass MS?

Why not using MailScanner rules? Your exim should only accept/relay mails from remote users when they use authentication anyways. So the only possibilities of a mail reaching MailScanner are

1. A mail from an outsider to your local users --> scan
2. A mail from a local user to an outsider --> use rulefiles with domains
3. A mail from a remote user that has authenticated to someone else --> use rulefiles with domains



Regards

Jan-Peter Koopmann
Dipl.-Wirtschaftsinformatiker
Senior Engineer

-- 
Seceidos GmbH
Robert-Bosch-Str.7
64293 Darmstadt/Germany

Phone:  +49 (6151) 66843-43
Fax:    +49 (6151) 66843-52
E-Mail: jan-peter.koopmann at seceidos.de
Web:    http://www.seceidos.de




More information about the MailScanner mailing list