Re: [fw-wiz] smtp proxy on firewall

From: Mark Teicher (mht3_at_earthlink.net)
Date: 11/27/04


To: "Paul D. Robertson" <paul@compuwar.net>
Date: Sat, 27 Nov 2004 14:13:39 -0700

At 01:11 PM 11/27/2004, Paul D. Robertson wrote:
>On Sat, 27 Nov 2004, Carson Gaspar wrote:
>
> > > You get the source, should there be a new SMTP feature you'd like the
> code
> > > to support. If you're not in a high volume environment, don't need to do
> > > gateway rejection for anti-spam, and don't need TLS, it should work just
> > > fine.
> >
> > Ummm... not so much. The last released version of FWTK still has locking
> > bugs in the SMTP proxy that can cause problems (definitely wedged mail,
> > maybe lost mail - my memory is fuzzy). I'm pretty sure there are patches
>
>Ah, I thought all that got fixed for 2.0, or whenever Joe Yao put out
>his patch, whichever came second... My memory is fuzzy though.

Yes, that is correct, the patch resolves a few of the known bugs, some
others regarding some tweaking based on your Operating System of choice :)
FreeBSD fans you may have to bang your head on your desk or keyboard to
resolve a couple of them while troubleshooting. The comments in the code
are very revealing to the issue.. :)

> > floating around that fix them, but I'm not sure. I fixed some of them, and
> > Viktor Duchovni fixed more (well, he rewrote most of the proxy), but we may
> > have fixed the Gauntlet source, not fwtk, so I don't know if they were ever
> > released...
> >
If you were one of the lucky customers < -:) > to purchase the Crystal
version of Gauntlet prior to them being acquired by Network Associates, the
source code indeed corrected for some quirky wedging mail issues.

>Google finds lots of hits for races and locks with smap, but they all look
>pretty old to me.
>
> > Apologies for the FUD-like post, but it has been 4+ years since I looked at
> > any of this...
>
>It's been longer for me, so I'll defer.

>Paul
>-----------------------------------------------------------------------------
>Paul D. Robertson "My statements in this message are personal opinions
>paul@compuwar.net which may have no basis whatsoever in fact."
>_______________________________________________
>firewall-wizards mailing list
>firewall-wizards@honor.icsalabs.com
>http://honor.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • RE: [Full-Disclosure] No Subject (re: openssh exploit code?)
    ... > responsible disclosure issues? ... That sounds kind of nazi-like to me mr. Schmehl. ... > commentary from the likes of Paul Schmehl. ... *just* on whether or not a patch has been released. ...
    (Full-Disclosure)
  • Re: synchronous signal in the blocked signal context
    ... On Tue, 1 Aug 2006, Paul E. McKenney wrote: ... I cannot claim any deep thought on this one, so please do revert it. ... original patch. ... unsigned long int flags; ...
    (Linux-Kernel)
  • Re: [fw-wiz] SCADA (or: How I learned to love receiving FWW in digest form)
    ... Is that *REALLY* who you want drafting computer security regulations? ... Paul D. Robertson "My statements in this message are personal opinions ...
    (Firewall-Wizards)
  • Re: this new worm virus
    ... paul wrote: ... >> need to format the system and reinstall clean. ... >> Once you've reinstalled, FIRST, put up a firewall. ... Next, patch your ...
    (microsoft.public.security)
  • BK-kernel-tools/shortlog update
    ... or in cases of dire need, you can apply the patch below. ... 'drzeus-list:cx.rmk.' => 'Pierre Ossman', ... 'paulkf:microgate.com' => 'Paul Fulghum', ... send the line "unsubscribe linux-kernel" in ...
    (Linux-Kernel)

Quantcast