SUMMARY: Help with .forward and Sendmail 8.x

From: MJGARCIA.US.ORACLE.COM (MJGARCIA@us.oracle.com)
Date: Tue Aug 27 1996 - 11:24:15 CDT


This list is truly amazing.
Here's the answer from Charles Homan (choman@applix.com):
 
Just say persimmons. :-) I had this problem when I opened up our fax server's
directory (chmoded everything to 777). If someone can write your .forward
file, they can execute _anything_ you can execute as you, so as a security
feature, sendmail won't use an open .forward file.
 
 
I chmod'ed the .forward from 666 to 644 and all is well.
 
 
Mike Garcia
mjgarcia@us.oracle.com


attached mail follows:


Fellow sun admins,
 
I've just upgraded an SS1000E to Solaris 2.5.1, including
103594-03. (The sendmail patch) I had a sorting program
being executed in a .forward file:
 
| /home/mikey/mailbin/slocal.csh -user mikey
 
which no longer works.
 
 
 
Here's the error from sendmail:
   ----- Transcript of session follows -----
550 /home/mikey/.forward: line 1: "| /home/mikey/mailbin/slocal.csh
-user
mikey"... Address <mikey@sr85> is unsafe for mailing to programs
 
   ----- Original message follows -----
 
 
This looks like a security feature of sendmail 8.x
Is there an easy way around this?
I'd like to still use my .forward for mail sorting.
 
Thanks in advance,
 
Mike Garcia
mjgarcia@us.oracle.com



This archive was generated by hypermail 2.1.2 : Fri Sep 28 2001 - 23:11:09 CDT