[Esa-l] Version 1.129
Floyd Pierce
floydp at boxusa.com
Thu Apr 19 11:39:21 PDT 2001
I've gone back and tested sort of extensively and here's what I see
1.128 ok with this as procmailrc:
VERBOSE=YES
DROPPRIVS=YES
LOGFILE=/var/log/proctrap
PATH="/usr/bin:$PATH"
SHELL=/bin/sh
POISONED_EXECUTABLES=/etc/procmail/poisoned
SECURITY_NOTIFY="floydp"
SECURITY_NOTIFY_VERBOSE=
SECURITY_QUARANTINE=/usr/proctrap/trapped
SECURITY_STRIP_MSTNEF=YES
MANGLE_EXTENSIONS='html?|exe|com|cmd|bat|pif|sc[rt]|lnk|dll|ocx|do[t]|xl[t]|
p[o]
t|rtf|vb[se]?|hta|p[lm]|sh[bs]|hlp|chm|eml|ws[cfh]|ad[ep]|jse?|md[abew]|ms[i
p]|r
eg|asd|cil|pps|asx|wm[szd]|vcf|nws|mpeg|mp[3ge]|avi|js|mov'
DEFANG_WEBBUGS=YES
POISONED_SCORE=21
SCORE_HISTORY=/var/log/scores
# Finished setting up, now run the sanitizer...
INCLUDERC=/etc/procmail/html-trap.procmail
# Reset some things to avoid leaking info to
# the users...
POISONED_EXECUTABLES=
SECURITY_NOTIFY=
SECURITY_NOTIFY_VERBOSE=
with same procmailrc and 1.129 log shows this:
(it's not verbose... it's not working :) )
"proctrap" 496 lines, 25822 characters
Defanging active HTML content in "test" from "Floyd Pierce"
<floydp at boxusa.com>
to floydp msgid=<OCEFIJOOEIPCDNLAGDJKMEGECLAA.floydp at boxusa.com>
Sanitizing MIME attachment headers in "test" from "Floyd Pierce"
<floydp at boxusa.
com> to floydp msgid=<OCEFIJOOEIPCDNLAGDJKMEGECLAA.floydp at boxusa.com>
procmail: Failed to execute "`"
procmail: Program failure (69) of " perl -p -e ' #\
$pastmsghdr = 1 if /^\s*$/; #\
if ($pastmsghdr) { #\
********************************************************************
And much much more.... I've re-downloaded and no improvement.
Thanks for the help.
--
Floyd Pierce | Director of Information Technology
Phone 847-790-2830 (IL) | Box USA
Phone 817-783-2355 (TX) | floydp at boxusa.com
Fax 847-790-2880 | floydp at imagin.net
> -----Original Message-----
> From: esa-l-admin at spconnect.com [mailto:esa-l-admin at spconnect.com]On
> Behalf Of John D. Hardin
> Sent: Thursday, April 19, 2001 8:37 AM
> To: Floyd Pierce
> Cc: esa-l at spconnect.com
> Subject: Re: [Esa-l] Version 1.129
>
>
> On Wed, 18 Apr 2001, Floyd Pierce wrote:
>
> > It seems that 1.129 sends verbose output to the log file no matter
> > what the procmailrc says. Unless of course I screwed it up!
> >
> > Anyone else have this?
>
> Make sure you're not setting DEBUG_VERBOSE to *anything*. It's an
> unfortunate side-effect of the model I'm using that "OPTION=off"
> actually turns it on...
>
> --
> John Hardin KA7OHZ ICQ#15735746 http://www.wolfenet.com/~jhardin/
> jhardin at wolfenet.com pgpk -a finger://gonzo.wolfenet.com/jhardin
> 768: 0x41EA94F5 - A3 0C 5B C2 EF 0D 2C E5 E9 BF C8 33 A7 A9 CE 76
> 1024: 0xB8732E79 - 2D8C 34F4 6411 F507 136C AF76 D822 E6E6 B873 2E79
> -----------------------------------------------------------------------
> An entitlement beneficiary is a person or special interest group
> who didn't earn your money, but demands the right to take your
> money because they *want* it.
> -- John McKay, _The Welfare State:
> No Mercy for the Middle Class_
> -----------------------------------------------------------------------
> 1293 days until the Presidential Election
> _______________________________________________
> E-mail Security Announce list mailing list
> E-mail Security Announce list at spconnect.com
> http://www.spconnect.com/mailman/listinfo/esa-l
More information about the esd-l
mailing list