Subject: Re: Open Relay and Sendmail
To: chrisp@innerfireworks.com, John Pannell <john@BANFF.newyearsday.com>
From: Henry B. Hotz <hotz@jpl.nasa.gov>
List: port-mac68k
Date: 12/29/1999 14:17:58
At 3:10 PM -0800 12/28/99, Christopher Palmer wrote:
>On Tue, 28 Dec 1999, John Pannell wrote:
>> 2.  Has anyone else had this experience?  What did you do to solve it?
>
>heh I got rid of Sendmail. Other mailers like Postfix and Qmail require
>that you do extra stuff to turn relaying *on*, unlike Sendmail which has
>it on by default. Also, alternative mailers are generally easier to
>configure and deal with than Sendmail.

I'll second that with a respect to Qmail.  I run Sendmail, but only because
the JPL tools service provides a nicely configured version that hooks up to
the local LDAP server and does a better job of unloading the central
server.  The recommendation of the main JPL security guru is to use Qmail
because a) it was built by someone with security as a primary consideration
and has relaying off by default, and b) it's a *h**l* of a lot easier to
configure.

In this day of universal, standard IP-based networking the extreme
flexability of Sendmail is no longer needed.  I've looked at the docs for
both Sendmail and Qmail and there is no contest for the ease of setup.
You'll probably get Qmail running in less than an afternoon.

Signature failed Preliminary Design Review.
Feasibility of a new signature is currently being evaluated.
h.b.hotz@jpl.nasa.gov, or hbhotz@oxy.edu