[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] alias: :include:/home/sites/siteX/list won't forward



Ahoy

> >(I want a program belonging to siteX to write and erase this list as
needed)
> >Before I go ahead and mess with this checking, Why is this rule
established?
> >Is there some very good security reason not apparent to me?
> >Is there a better way to do this rather than by disabling this rule?
>
> The authors of sendmail believe that group writable directories are a
> security hole.  In fact, they are.  You should NOT disable this unless you
> have to.

What is the hole? What can happen? That's my question.

> The majordomo faq (you have read the majordomo faq, haven't you <wry
grin>)
> recommends that you simply change directory permissions on the majordomo
> subtree from the installation default of 775 to 755.


But I am not trying to mess with majordomo. I just want to include a file. I
am not trying to run a mailing list like this one. I just want to mail to a
list in a file.

But the mystery deepens:

1) newaliases -v does not generate any warnings about impermissible files
2) sendmail -v -d44.4 -bv postmaster does not generate any warnings. It just
stalls.
3) O DontBlameSendmail=forwardfileingroupwritabledirpath,
includefileingroupwritabledirpath does not work either
4) No matter what directory I set the included file in nor what permissions
or ownerships I assign, I do not get any warnings, but the include does not
work.

Aloha
Davis