Diary of a mad man
Securing Majordomo
Did you know that buy default majordomo will give a list of all the addresses on your mailing list to anyone?
I have written a script that will tidy up majordomo config files as follows…
- Only shows lists you are subscribed to with the ‘lists’ command
- Does not allow anyone to use the ‘who’ command to get addresses
- Doesn’t allow anyone to use the ‘which’ command to get addresses
This can either be run once or added to /etc/cron.daily so that any new lists created are forced to the correct settings.
Simply download the file, change the directory path at the top of the file if required and execute. Download Here.
| Print article | This entry was posted by Dogsbody on 14 Oct 2007 at 3:41 am, and is filed under Computing, Security. Follow any responses to this post through RSS 2.0. You can leave a response or trackback from your own site. |




