[rescue] Uptime war (Was: STOP THE INSANITY)
Mattias Nordlund
mathew at eagle.y.se
Wed Jun 18 11:54:44 CDT 2003
On Wed, 18 Jun 2003, Curtis H. Wilbar Jr. wrote:
> >From: Mattias Nordlund <mathew at eagle.y.se>
> >
> >Probably, but as it only is used as mail-server with postfix, and
> >is firewalled so only open port from the internet is port 25.
> >
> >Then all users read mail localy on other machines that have NFS mounted it
> >or over imap (not from the internet)
>
> What protection do you have against NFSshell ? Around 6 years ago when
> I was at a regional ISP, we eliminated NFS to the mail server and went
> with an undocumented IMAP (using pine's master config to reference the
> IMAP server). Anyone using something other than pine from the shell
> server no longer had e-mail access... but that was only a couple of
> people. There was too much rampant abuse of NFS and eliminating it was
> the easiest thing.
None, but this is a non-profit computer club, so security does matter, but
is not the most importamt thing. If we can't trust the users of the other
machines, then it is all allready owned..
/Mattias
More information about the rescue
mailing list