PHWinfo banniere

Titres
PORTAIL ANNUAIRE ARTICLES COMPARATEUR HÉBERGEURS DEVIS FORUMS RÉDUCTEUR D'URL
Précédent   PHWinfo > Forums Hébergement > Forum Logiciels d'hébergement > comp.mail.sendmail > Questions about trust_auth rule set
S'inscrire FAQ Membres Recherche Messages du jour Marquer les forums comme lus
comp.mail.sendmail Configuring and using the BSD sendmail agent.

Questions about trust_auth rule set

Réponse
 
LinkBack Outils de la discussion
Vieux 24/05/2007, 05h52   #1
John T. Guthrie
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Questions about trust_auth rule set

Hello all,

I apologize if these questions have been answered elsewhere; I have
been searching all over for answers without success.

According to what I've read in the README file, the trust_auth rule
set is used to determine whether or not the AUTH= SMTP parameter gets
passed on to next server. Is this coorect? If so, what is the value
of this? Are there really email clients out there that are able to
send an AUTH= parameter that is not the same as the authentication
credential?

Moreover, is it correct that this rule set has nothing to do with
relaying, and that I should be using Relay_Auth/Local_Relay_Auth for
this purpose? If so, are the $&{auth_*} macros available in those
rule sets? I ask because everything that I have read seems to only
mention those macros in connection with trust_auth.

Thank you very much in advance.

JTG

  Réponse avec citation
Vieux 24/05/2007, 06h22   #2
John T. Guthrie
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: Questions about trust_auth rule set

On May 24, 12:52 am, "John T. Guthrie" <mathguth...@gmail.com> wrote:
> According to what I've read in the README file, the trust_auth rule
> set is used to determine whether or not the AUTH= SMTP parameter gets
> passed on to next server. Is this coorect? If so, what is the value
> of this? Are there really email clients out there that are able to
> send an AUTH= parameter that is not the same as the authentication
> credential?


I apologize for the self-reply. I just remembered one other question
that I had. If the trust_auth rule set is used only for determining
whether or not to pass on the AUTH= parameter to other servers, why
does it generate messages of the following form in the mail log

ruleset=trust_auth, arg1=lkjasdjflasjdfklajdsflka, relay=my.relay.host
[192.168.2.27], reject=550 5.7.1 <guthrie@some.address>... guthrie not
allowed to act as lkjasdjflasjdfklajdsflka

when the following SMTP conversation takes place:

mail from: <guthrie@some.address> AUTH=lkjasdjflasjdfklajdsflka
250 2.1.0 <guthrie@some.address>... Sender ok

The server saying that the sender address is okay, but then logging a
rejection is kind of confusing. I can make this occur both with and
without authentication.

Thanks again.

JTG

  Réponse avec citation
Vieux 24/05/2007, 22h05   #3
Per Hedeland
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: Questions about trust_auth rule set

In article <1179984160.735868.163680@u30g2000hsc.googlegroups .com> "John
T. Guthrie" <mathguthrie@gmail.com> writes:
>On May 24, 12:52 am, "John T. Guthrie" <mathguth...@gmail.com> wrote:
>> According to what I've read in the README file, the trust_auth rule
>> set is used to determine whether or not the AUTH= SMTP parameter gets
>> passed on to next server. Is this coorect?


Yes.

>> If so, what is the value
>> of this? Are there really email clients out there that are able to
>> send an AUTH= parameter that is not the same as the authentication
>> credential?


Well, you're demonstrating one down below.:-) Obviously, someone that
thinks it would be useful to forge the AUTH= parameter won't be limited
by what off-the-shelf MUAs are able to do.

>I apologize for the self-reply. I just remembered one other question
>that I had. If the trust_auth rule set is used only for determining
>whether or not to pass on the AUTH= parameter to other servers, why
>does it generate messages of the following form in the mail log
>
>ruleset=trust_auth, arg1=lkjasdjflasjdfklajdsflka, relay=my.relay.host
>[192.168.2.27], reject=550 5.7.1 <guthrie@some.address>... guthrie not
>allowed to act as lkjasdjflasjdfklajdsflka
>
>when the following SMTP conversation takes place:
>
>mail from: <guthrie@some.address> AUTH=lkjasdjflasjdfklajdsflka
>250 2.1.0 <guthrie@some.address>... Sender ok


It's basically "economic" - the ruleset call uses the same processing as
all the others that may actually reject a message or a recipient, hence
it produces the same type of log entry.

>The server saying that the sender address is okay, but then logging a
>rejection is kind of confusing.


You just need to learn that when the entry says ruleset=trust_auth, it's
a rejection of the AUTH= parameter and nothing else.

--Per Hedeland
per@hedeland.org
  Réponse avec citation
Réponse


Outils de la discussion

Règles de messages
Vous ne pouvez pas créer de nouvelles discussions
Vous ne pouvez pas envoyer des réponses
Vous ne pouvez pas envoyer des pièces jointes
Vous ne pouvez pas modifier vos messages

Les balises BB sont activées : oui
Les smileys sont activés : oui
La balise [IMG] est activée : oui
Le code HTML peut être employé : non
Trackbacks are oui
Pingbacks are oui
Refbacks are oui


Fuseau horaire GMT +1. Il est actuellement 14h09.


Édité par : vBulletin® version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0 RC5 Tous droits réservés.
Version française #16 par l'association vBulletin francophone
PHWinfo est un site Éducation Sans Frontières ©2000-2008
Ad Management by RedTyger
©Tous droits réservés par les parties respectives
Page generated in 0,12075 seconds with 11 queries