LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 09-19-2003, 03:57 PM   #1
cartfanatic39
LQ Newbie
 
Registered: Jul 2003
Location: Boston
Distribution: RH 8
Posts: 26

Rep: Reputation: 15
Question ANy tips for securing sendmail??


I currently have a Linux 8 RH server running sendmail. This server only takes mail from my firewall, scans it and then relays it directly off to my local mail server on the same local network.

This is ALL this machine does. How can I make sure sendmail and the server is safe from the spammers in this world who like to use it as their own relay??

ThAnkS
 
Old 09-19-2003, 09:17 PM   #2
mychl
Member
 
Registered: Jul 2001
Location: Earth
Posts: 164

Rep: Reputation: 30
There are some good apps out there... spamcontrol is one that I use...

Basically you need to monitor your logs, and keep sendmail updated when security holes get filled.

You don't really have to worry about spammers if you aren't an open relay... there is a way to test your server by trying to make it relay mail to or from bogus domains.... google will help you there.

Read up on creating your sendmail.cf file.... there's alot going on there.

SSL and TLS are always good too...

HTH
 
Old 09-21-2003, 02:52 PM   #3
chort
Senior Member
 
Registered: Jul 2003
Location: Silicon Valley, USA
Distribution: OpenBSD 4.6, OS X 10.6.2, CentOS 4 & 5
Posts: 3,660

Rep: Reputation: 76
If that's all your mail relay is doing, and if you're concerned about security, DITCH SENDMAIL. It's had a horrifying number of severe security flaws over the several decades of it's existence.

Qmail, Postfix, and Exim were all designed as sensible Sendmail replacements. Postfix is probably the most simple to setup and possibly the most secure of the replacements. There are several things you can do in Postfix to lock it down, including dropping dangerous MIME parts (or messages that contain dangerous MIME parts). Refer to the Postfix documentation and do some Googling for details.
 
Old 09-22-2003, 08:18 AM   #4
cartfanatic39
LQ Newbie
 
Registered: Jul 2003
Location: Boston
Distribution: RH 8
Posts: 26

Original Poster
Rep: Reputation: 15
Thanks for all the responses. I have heard sendmail does have many holes in it. I will start researching Postfix today..

ThAnKs
 
Old 09-22-2003, 09:59 AM   #5
h1tman
Member
 
Registered: Jul 2003
Distribution: Slackware 11
Posts: 439

Rep: Reputation: 30
if im not mistaken its one of the top 5 ways a linux system gets compromised.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Securing my sendmail bob151 Solaris / OpenSolaris 1 07-10-2005 11:45 AM
newbie: securing 9.2 viniosity SUSE / openSUSE 3 03-07-2005 11:10 PM
securing SNMP andy18 Linux - Networking 0 10-20-2004 02:20 AM
tips on securing a Counter Strike server Hex29A Linux - Security 2 07-04-2004 09:42 AM
links for securing sendmail and apache and linux red hat 8 server Tigger Linux - Security 2 06-11-2003 07:43 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 01:21 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration