Re: Trendmicro Viruswall Linux POP scanning

From: Jason Clifford (jason@uklinux.net)
Date: 02/23/02


From: Jason Clifford <jason@uklinux.net>
Date: Sat, 23 Feb 2002 11:12:15 +0000

On Sat, 23 Feb 2002, Wolfgang Kueter wrote:

> That is the right question to ask. The only reason I can imagine are
> connections to external POP3 servers that run no scanner. However such
> connections should actually not be allowed and therefore should be
> blocked by the firewall rules if one runs an own smtp server that
> offers a scanner for incoming mail.

There may be a good reason to allow such connections.

In such cases I would argue that the process that downloads the mail from
the remote POP servers should then pass it off to the local SMTP server
(via any antivirus gateways if that is part of your network design). This
is not hard to implement.

Jason Clifford



Relevant Pages

  • IIS SMTP
    ... On the General tab of the SMTP Server, ... box off for "Limit number of connections to..." ... Seems I can't change this property, is there a reason why ...
    (microsoft.public.inetserver.iis.security)
  • Re: Give modern women the husband they deserve. None.
    ... obviously ARE women living alone. ... connections to other people so it stands to reason that women are less ... friendships and continuing connections. ... Methinks Dave Sim protests to much. ...
    (soc.men)
  • Re: Leaving rasfc
    ... some reason people on Usenet seem to be allergic to HTML. ... is probably one of the main reasons usenet is still hanging on. ... Many people have pointed out they have dial-up or slow connections. ... so they tend to use a format consistent with the main site. ...
    (rec.arts.sf.composition)
  • Re: 94 accord, fuel pump not running sometimes when starting
    ... the only connections I've yet to clean are the connectors for the ECM ... No reason /not/ to do that...except that Honda does not ground its ECMs ... They're held on with metal friction clips. ... the panel as possible to minimize flex as you yank. ...
    (rec.autos.makers.honda)
  • Re: Spoofing e-mail revisited
    ... The reason I think Trend tags this is because the SRV record of the sending domain which is raptor-p.mls.ca does not match the sending SMTP server for rob@xxxxxxxxxxxxxxxxx. ... The reason I said this was a poor design is because any web based forms I have seen usually have the message coming from the webmaster or some other user at the originating site and not pretending to be a sender it isn't. ...
    (microsoft.public.exchange.admin)