[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: spam-proofing my mhonarc archive



Mark,

Nice bit of obfuscation but you may want to check on e more thing. I checked
your archive out of interest and noted immediately that
"Disposition-notification-to: richardhpratt@comcast.net " was visible in the
first message I checked ([public-parks] Just listening, Richard Harlan Pratt
02.15.2003). You may want to check this.

Regards, 
Stu 
-- 
Stu Miller 
Director, LIMS & Lab Informatics 
Taratec Development Corporation 
1170 US Highway 22E 
Bridgewater, NJ 08807 
USA 
Phone:	(908) 255-1592 
Fax: 	(908) 725-8999 
Mobile: 	(610) 216-7249 



-----Original Message-----
From: Mark Stosberg [mailto:mark@summersault.com] 
Sent: Saturday, February 15, 2003 6:38 PM
To: mhonarc-users@mhonarc.org
Subject: Re: spam-proofing my mhonarc archive


On Sat, 15 Feb 2003, Earl Hood wrote:

> On February 15, 2003 at 12:37, Mark Stosberg wrote:
>
> > 1. Protect .mhonarc.db
> > First, I noticed that my ".mhonarc.db" was web-visible, and it 
> > contained a handy list of e-mail addresses that could be grabbed by 
> > a e-mail harvester. My first task was to move this out of web-space. 
> > Mhonarc no w supports this directly. I just had to move the file, 
> > and update my .qmail file to add
> >
> > 	-dbfile /path/to/new/.mhonarc.db
>
> The FAQ mentions about .mhonarc.db.  Also, in v2.6.0, the file 
> permissions for .mhonarc.db are no longer world readable, by default, 
> and can be controled by the DBFILEPERMS resource.

Thanks for the response Earl.

I thought about using file permissions, but I'm using the SuExec
configuration with apache, so the the user running mhonarc and the user
running the webserver are the same.

  Mark

--
http://mark.stosberg.com/

---------------------------------------------------------------------
To sign-off this list, send email to majordomo@mhonarc.org with the message
text UNSUBSCRIBE MHONARC-USERS

NOTICE: This electronic mail transmission and any attachment(s) may contain
confidential information and are intended only for the person(s) named.  Any
use, copying or disclosure by any other person is strictly prohibited.  If
you have received this transmission in error, please notify the sender via
e-mail and delete this message.

---------------------------------------------------------------------
To sign-off this list, send email to majordomo@mhonarc.org with the
message text UNSUBSCRIBE MHONARC-USERS


[Index of Archives]     [Bugtraq]     [Yosemite News]     [Mhonarc Home]