On Sun, 26 Mar 2000, Oswald Buddenhagen wrote:

> i like the idea of denying all incoming packets on port 25.

why not do it? port 25 is only for incoming mail, so block it if you don't
need it (that's what you should do for all ports you don't need).

> > alternatively you can setup relay/delivery blocking rules in the
> > sendmail-config. but it's just a question of time, when the next
> > security hole is found in sendmail, so i prefer low-level-blocking.

i agree.
you want to use some deliver-only MTA for these kind of sites.
ssmtp is the program of your choice. (apt-get install ssmtp)

generally i'd say, don't use sendmail at all :)


