Subject: Re: Sendmail/TCP wapper and HELO
To: Steven M. Bellovin <smb@research.att.com>
From: John Maier <jmaier@midamerica.net>
List: netbsd-users
Date: 08/19/2003 07:44:34
That was just too obvious...

Thanks!

jam

----- Original Message -----
From: "Steven M. Bellovin" <smb@research.att.com>
To: "John Maier" <jmaier@midamerica.net>
Cc: "NetBSD - Users" <netbsd-users@NetBSD.org>
Sent: Monday, August 18, 2003 4:10 PM
Subject: Re: Sendmail/TCP wapper and HELO


> In message <00fd01c365cb$9c920e90$c814a8c0@jmaier>, "John Maier" writes:
> >Any idea how to get sendmail to honor TCP wappers (host.allow/deny) so it
> >immediately closes a connection before any sort of dialog occurs.
> >
> >I have observed that if inetd see that a connection request is denied via
> >TCP wrappers, the connection is close immediately.
> >
> >Sendmail will open a connection, send a banner message, respond to HELO
> >commands, but anything beyond that, i.e. MAIL RCPT etc. generate a 550
> >error.
> >
> >I want no banner, no HELO, just a closed port.
> >
>
> Use ipf instead -- they won't even get a syn-ack.
>
>
> --Steve Bellovin, http://www.research.att.com/~smb
>
>
>