From: mouss (no email)
Date: Sun May 15 2005 - 17:01:14 EDT
Kevin Pang wrote:
>
>Unfortunately I can't find any threads related with Awstats exploit. I
>didn't Awstats could also be used as mail log analyzer and I use it for
>apache log only.
>
>
>
well, you can try a lot of things. and you'll try and try, and you won't
get far...
now, if you really wanna solve your problem, take it the strong way:
- deny access to sendmail from anybody but root: chmod your sendmail
binaries.
this way no program will be able to abuse you unless it has root privs.
- require authentication for relay (set mynotworks to void).
this way nobody will abuse you unless he is traceable.
|
|
|