spf-discuss
[Top] [All Lists]

Re: SRS in .forward and reversing in /etc/aliases

2004-02-18 16:20:14
mw-list-spf-discuss(_at_)csi(_dot_)hu (mw-list-spf-discuss(_at_)csi(_dot_)hu) 
wrote:

On Tue, Feb 17, 2004 at 06:49:32PM -0500, Meng Weng Wong wrote:

.forward before: final(_at_)destination(_dot_)com
.forward after:  "|/usr/bin/srs --secret=/etc/srs.secret 
final(_at_)destination(_dot_)com"

What if destination.com is hosted on the same server?
Each user will handle (know?) the secrets?  

/usr/bin/srs could be setgid/setuid to a group/user that has exclusive
powers to read the secret file.  This, of course, means that /usr/bin/srs
has to be designed and implemented very carefully.

-- 
Greg Wooledge                  |   "Truth belongs to everybody."
greg(_at_)wooledge(_dot_)org              |    - The Red Hot Chili Peppers
http://wooledge.org/~greg/     |