Beta release 4.62.4
Julian Field
MailScanner at ecs.soton.ac.uk
Tue Jul 24 16:50:19 IST 2007
I have just released a new beta, 4.62.4.
This contains some bug-fixes, a few new minor features such as Kaspersky
KAV4FS support, along with 2 major new ones:
1 - Addition of 4 new "store" actions, "store-nonmcp", "store-nonspam",
"store-mcp" and "store-spam" so you can pick any particular bit of the
quarantine you want as a message action.
2 - Addition of the "SpamAssassin Rule Actions" setting which is
documented in the MailScanner.conf file.
The documentation of SpamAssassin Rule Actions from MailScanner.conf is
this:
# This next setting is very powerful. It allows you to adjust the list of
# actions taken on a message by adding or removing any action or actions,
# depending on what SpamAssassin rules it matched.
# It can be used to replace the functionality of MCP, but without the large
# processing overhead that involves.
#
# The setting consists of a comma-separated list of 'SA_RULENAME=>action'
# pairs, where 'SA_RULENAME' is the name of any SpamAssassin rule (or
# meta-rule), and 'action' is the name of any of the actions listed above
# the 'Spam Actions' configuration setting or the word "not-" preceding any
# of the action names.
# Preceding the action name with "not-" as in "not-deliver" or "not-forward
# user at domain.com" will cause the action to be removed from the list of
# actions that would normally be taken on this message.
# If you want to execute multiple actions on 1 rule, simply specify multiple
# 'SA_RULENAME=>action' pairs.
# Example: Setting this to
# SpamAssassin Rule Actions = FROM_BOSS_WIFE=>not-forward
secretary at domain.com
# would result in mail from the boss's wife not being forwarded to the
boss's
# secretary, which would be useful if the non-spam actions for the message
# included forwarding to the boss's secretary.
#
# Combining this with a ruleset makes it even more powerful, as different
# recipients and/or senders can have different sets of rules applied to
them.
#
# This can also be the filename of a ruleset, in which case the filename
# must end in ".rule" or ".rules".
The full Change Log is this:
* New Features and Improvements *
1 Improved non-Linux installer.
1 Improved Linux installer.
1 Updated OpenBSD installation guide. Thanks to Jeremy Evans for this.
1 Upgraded MIME::Base64 to 3.07.
1 Improved error reporting for clamd permissions problems. Thanks Rick.
2 Added SAUPDATEARGS to /etc/sysconfig/MailScanner and
/usr/sbin/update_spamassassin. For a good use of this, see
http://daryl.dostech.ca/sa-update/sare/sare-sa-update-howto.txt and search
for "HOWTO" in the Subject: line of the MailScanner-discussion list
archive.
This process replaces RulesDuJour entirely.
Another good ruleset to add to your setup is
http://www.peregrinehw.com/downloads/SpamAssassin/contrib/KAM.cf
To download this automatically every night, fetch
http://www.mailscanner.info/files/4/KAM.cf.sh and put it in
/etc/cron.daily
and make it executable (type "chmod +x /etc/cron.daily/KAM.cf.sh").
3 Added "Known Web Bug Servers" so you can blacklist images from known
servers
of web bug services.
3 Added functionality of "milter-null" to MailScanner so you no longer
need to
run this separately. It is called "Watermarking" and there is a whole
section for the settings in MailScanner.conf. They are
Add Watermark = yes
Skip Spam Checks If Watermark Valid = yes
Watermark Header = MailScanner-%org-name%-Watermark:
Watermark Lifetime = 432000 # in seconds, = 5 days
Watermark Secret = SET-THIS-TO-A-SECRET!
Also added Digest::MD5 to the required list of Perl modules, this is
needed
for the watermarking code.
3 Added optional image to the clean message signature. You can also use this
to add an arbitrary image attachment to any message, if you so wish. The
main point is to be able to have graphical HTML signatures on messages.
The settings are
Attach Image To Signature = no
Attach Image To HTML Message Only = yes
Signature Image Filename = %report-dir%/sig.jpg
Signature Image <img> Filename = signature.jpg
4 Added support for Kaspersky kav4fs. Set virus.scanners.conf entry to
point to /opt/kaspersky.
4 Changed default value to "Max SpamAssassin Size = 100k" as modern PDF
spams
are getting quite large, and PDFInfo.pm doesn't work with cropped
messages.
4 Improved Clamd parser to handle Sane Security ClamAV signature databases
which detect spam and so on from the contents of the headers, and hence
find infections without attachment filenames. Thanks to various people for
help with this, you know who you are :-)
4 Improved upgrade_MailScanner_conf so that it checks that the 'Monitors for
ClamAV Updates' setting looks for inc and cvd files. Problems have
recently
been suffered by many due to the value of this setting being out of date.
It doesn't automatically re-write their setting in case they have
installed
ClamAV somewhere odd and have customised it.
4 Changed 'Monitors for Sophos Updates' setting default value to point to
appropriate file for Sophos version 5 and upwards, and have added check
in upgrade_MailScanner_conf to ensure their setting now points to a new
location. It prints a warning if sophos-av does not appear in the path.
4 Added configuration setting "SpamAssassin Rule Actions". This setting is
very powerful and can be used to implement many things that MCP can do,
without having the processing overhead of MCP. The documentation for it is
in the MailScanner.conf file. Its power is limited by your imagination :-)
Start combining it with rulesets and you can take (or _not_ take) any
combination of actions dependent on any bit of content in the message
or its
headers. You could try out new SA tests by storing in quarantine every
message that matches a new particular SpamAssassin rule (or meta-rule for
creating more complex expressions).
* Fixes *
2-2 Fixed error in RPM installer.
2-3 Fixed error in update_spamassassin.
3-2 The watermarking code should do something now :-)
3-3 Rewrote the watermarking docs so they reflect the truth.
4 --lint now reads all the Custom Functions properly.
4 Bug in auto-zip fixed where attachments could be deleted without being
added to zip. Thanks to Matt Hampton.
4 Bug with '-' in HTML attribute names confusing phishing net fixed.
Thanks
to John Wilcock.
Jules
--
Julian Field MEng CITP
www.MailScanner.info
Buy the MailScanner book at www.MailScanner.info/store
Need help customising MailScanner?
Contact me!
Need help fixing or optimising your systems?
Contact me!
Need help getting you started solving new requirements from your boss?
Contact me!
PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654
--
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.
For all your IT requirements visit www.transtec.co.uk
More information about the MailScanner
mailing list