Security impact of lmtpd with pre-auth

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,
Apparently (http://wiki.exim.org/CyrusImap) I need to let lmtpd acceptconnections from localhost as pre-authenticated to make cyrus and eximwork nicely together.
Can someone explain what this actually means security wise? I.e. whatcould a malicious user on localhost do with a pre-authed connection?
Unfortunately the lmtpd manpage does not say anything about for whichoperations an authorization is required.
Thanks,
   -Nikolaus
--  »Time flies like an arrow, fruit flies like a Banana.«
  PGP fingerprint: 5B93 61F8 4EA2 E279 ABF6  02CF A9AD B7F8 AE4E 425C
----Cyrus Home Page: http://cyrusimap.web.cmu.edu/Cyrus Wiki/FAQ: http://cyrusimap.web.cmu.edu/twikiList Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html


[Index of Archives]     [Cyrus SASL]     [Squirrel Mail]     [Asterisk PBX]     [Video For Linux]     [Photo]     [Yosemite News]     [gtk]     [KDE]     [Gimp on Windows]     [Steve's Art]

  Powered by Linux