[Esd-l] Conditionnal postmaster notifications

John D. Hardin jhardin at impsec.org
Sun Aug 29 09:41:46 PDT 2004


On Sun, 29 Aug 2004, Pierre Etchemaite wrote:

> I (as postmaster) would like not to be notified of some file types
> being filtered; .pif, .scr, .vbs,... have not a single chance of
> being a legitimate file in business, reading those notifications
> is just a waste, and they're about half of the notifications I get
> those days.

Yeah, don't I know it...

> Of course, a solution would be to filter those notifications in
> the procmail recipe that's already in charge of sorting postmaster
> email, but I wondered if procmail-security already had provision
> for this feature, or if you would be interested in that idea...

At present, no, there is no such capability built-in. The way the
sanitizer is structured it would probably be some more procmail
processing after the perl part runs, since procmail handles the
implementation of the policy (quarantining, notification, etc.)

If you want to work up a patch for the sanitizer I'd be happy to
include it. I would suggest something along the lines of
$MANGLE_EXTENSIONS, perhaps $NONOTIFY_EXTENSIONS, and matching
against the sanitizer status headers.

Something to consider: what if an email comes in with both types of
attachments? You'd probably want to be notified.

--
 John Hardin KA7OHZ    ICQ#15735746    http://www.impsec.org/~jhardin/
 jhardin at impsec.org    FALaholic #11174    pgpk -a jhardin at impsec.org
 key: 0xB8732E79 - 2D8C 34F4 6411 F507 136C  AF76 D822 E6E6 B873 2E79
-----------------------------------------------------------------------
  The [assault weapons] ban is the moral equivalent of banning red
  cars because they look too fast.
                                   -- Steve Chapman, Chicago Tribune
-----------------------------------------------------------------------
   15 days until the "Scary-Looking Guns" ban expires


More information about the esd-l mailing list