Am 04.03.2015 um 11:21 schrieb Simon Fraser: > On Wed, Mar 04, 2015 at 11:13:25AM +0100, Sven Schwedas wrote: > >>> I'm running a virus scan over the spool directory and wonder how to get >>> those messages removed within which a virus has been found. The easiest >>> way would be to let the virus scanner do this, and the virus scanner >>> doesn't use IMAP. >> >> Wouldn't it be safer to integrate the virus scanner in your MTA's >> processing pipeline, /before/ delivering it to clients that might >> automatically download the viruses before your file-based virus scanner >> has a chance to delete it? > > Doing both would be best, I believe. We scan the spool, and it finds a > few items that have made it into the virus definitions between delivery > and the scan. ... and the virus scanner and virus definitions are being improved over time, so a scan of the spool may find viruses that could not be detected when the message was delivered (besides users moving their messages via IMAP between multiple accounts). ---- Cyrus Home Page: http://www.cyrusimap.org/ List Archives/Info: http://lists.andrew.cmu.edu/pipermail/info-cyrus/ To Unsubscribe: https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus