MailScanner flooding auth.log

Julian Field MailScanner at
Mon Jun 11 13:40:36 IST 2007

Hash: SHA1

The only time this is done is in the startup code if your 
MailScanner.conf hasn't been customised.
Oh, and one of the sample Custom Functions use it.
So I would check your Custom Functions.

Arjan Schrijver wrote:
> Hi list,
> Ever since we installed MailScanner, our auth.log has been 
> flooded with su's from root to nobody.
> A little investigation told us that MailScanner was su'ing to user 
> nobody for every mail, just to execute 'hostname --fqdn'.
> This is new in 4.60, since the old MailScanner installation didn't 
> have the problem.
> Why was this done this way, and isn't there a more clean way to do it?
> Regards,
> Arjan


- -- 
Julian Field MEng CITP
Buy the MailScanner book at

MailScanner customisation, or any advanced system administration help?
Contact me at Jules at Jules.FM

PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654
For all your IT requirements visit

Version: PGP Desktop 9.6.1 (Build 1012)
Charset: ISO-8859-1


This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.
For all your IT requirements visit

More information about the MailScanner mailing list