-----BEGIN PGP SIGNED MESSAGE-----
Hash: RIPEMD160
On Tuesday 22 June 2004 14:27, David Relson wrote:
Individual logs leaves out two things that I, as sysadmin, consider
important:
1 - Easily monitored logs (to check for problems, performance,
whatever...)
2 - The ability to use filters and divert spam, viruses, etc to a
central place, like the sysadmin.
I've been toying with an idea Ron Johnson mentioned. You can create a
directory /usr/local/log and make everything in it world writeable, but not
world readable. You could name the log file with a name that can not easily
by guessed or subject to a dictionary attack...but...since
/etc/maildrop/maildroprc needs to be world readable, the log file name can be
determined by anyone and written to. From a security standpoint, it sucks
and for that reason, maildrop can not securely use a directly written central
log file.
- --
Robin Lynn Frank
Director of Operations
Paradigm-Omega, LLC
======================
Signature terminated by sigfault.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Sed quis custodiet ipsos custodes?
iD8DBQFA2Lr8o0pgX8xyW4YRAxoHAKDBvLgxyCTNtZUe++03TOMBKh7DGACdFzp+
cyjFroZ2p3jVUZ+RoxSRDBM=
=S5KO
-----END PGP SIGNATURE-----