About Beckman

I'm a big geek, serial entrepreneur and idea guy. I've been called names, such as PHP Guru, MySQL DBA, BOFH, Security God, etc. That and Peter-Peter-Pumpkin-Eater.

The image in the header is © Peter Beckman.

Archives

01 Jan - 31 Jan 2003
01 Feb - 28 Feb 2003
01 Mar - 31 Mar 2003
01 Apr - 30 Apr 2003
01 May - 31 May 2003
01 Jun - 30 Jun 2003
01 Jul - 31 Jul 2003
01 Aug - 31 Aug 2003
01 Sep - 30 Sep 2003
01 Oct - 31 Oct 2003
01 Feb - 28 Feb 2004
01 Jul - 31 Jul 2004
01 Aug - 31 Aug 2004
01 Oct - 31 Oct 2004
01 Mar - 31 Mar 2005
01 Apr - 30 Apr 2005
01 May - 31 May 2005
01 Jun - 30 Jun 2005
01 Jan - 31 Jan 2006
01 Jun - 30 Jun 2006
01 Feb - 28 Feb 2007
01 Apr - 30 Apr 2007
01 Sep - 30 Sep 2007
01 Mar - 31 Mar 2008
01 May - 31 May 2008
01 Jul - 31 Jul 2013
01 Sep - 30 Sep 2013
01 Apr - 30 Apr 2014
01 Jul - 31 Jul 2014
01 Dec - 31 Dec 2014
01 Dec - 31 Dec 2015

Links

AngryOx.com
Tossable Digits - Cheap, Anonymous, Disposable Phone Numbers
The Internet License Plate Database
Love & Onions (Jen, my wife)
Roadie Speaks Blog
BananaForce
AdCritic.com
Slashdot
I Love Ben Brown

Search!

Last Comments

marshakaplan766 (Wow, I'm fat.): Wow_im_fat, navigating li…
https://www.wellb… (Many, Many Things…): Liver Renew is the best l…
Easy Lift (Centrum Silver Ad…): As an avid user of Easy L…
marshakaplan766 (Renaming your OSX…): Renaming your OSX Home Di…
GoaDarling (Wow, I'm fat.): Embark on an unforgettabl…
John smith (Centrum Silver Ad…): The Centrum Silver Ad has…
John smith (Centrum Silver Ad…): Centrum Silver ads often …
merryjhon (Centrum Silver Ad…): The Centrum Silver ad flo…
Hairmond (Wow, I'm fat.): Hairmond specializes in t…
MyCleanRServices (Wow, I'm fat.): MyCleanRServices is your …

Stuff

Powered by Pivot - 1.40.1: 'Dreadwind' 
XML: RSS Feed 
XML: Atom Feed 

« Many, Many Things | Home | The Fuzz Congregation… »

Sendmail Vulnerabilities and Spam and Jen's "Booshday"

Tuesday 04 March 2003 at 12:47 am Warning: Geeky Entry.

So I've been reading tons and tons of information about today's sendmail vulnerability and about how spam is trying to be thwarted. Some people think that if spam is being delivered, just make the connection super slow and it will kill the remote server if enough people use the software. I like the idea, but I wonder if it will work. Others have said "whitelist everything" but then you'll just find someone who can write a "whitelist buster" and you have your problem still.

There needs to be some accountability. So what about this: if I want to have a sendmail server, I need to accept mail from other sendmail servers. The only way that I will accept mail is if the remote server can provide me a "key" that I can validate as an "approved" mail server. All I need to do is go to a website, register my contact info, have it verified, find a few nearby (network-wise) mail servers, and request to be a part of their network. Once they approve me, I get a key to put on my server so they can connect. If I have a spam problem, I talk to the 5 or 10 systems admins that I have as "approved" on my list. They in return talk to their connected servers, so on and so forth. Hell, it doesn't even have to be an approved key -- just block everything unless it is from a known/approved IP.

The problem is that you have mail taking 10-30 hops across the Internet, rather than at the least, 1 or 2 hops. Is all that processing power worth the pain? Maybe each hop will hand the sending server a key and another mail server; that mail server will get the last key and check it; if it is approved, it hands over another key and another mail server; the sending mail server will go to THAT mail server to get another key and another mail server until you reach the destination.

It's a lot of work, reducing/stopping spam worth it? Sure, a piece of mail might take 5 times as long to deliver, but with only the key being passed between the 10-30 intermediaries, it would reduce bandwidth, especially since the mail is only transmitted once the sending server finds and is approved by the receiving server.

It's a thought, one that is still in progress. I just figured I write it down so I wouldn't forget.

It's Jen's 29th Birthday today. Happy Birthday, Baby. I love you forever.
one comment

What is sendmail?
Mary Kate - 05 03 03 - 10:17


carrentalhawaii
carrentalhawaii
Sent on 24 04 07 - 22:59 , via carrentalhawaii

instantpaydayloan
instantpaydayloan
Sent on 03 05 07 - 21:52 , via instantpaydayloan

Trackback link:

Please enable javascript to generate a trackback url

  
Remember personal info?

Emoticons / Textile

To prevent automated comment-spam, we require you to answer this silly question.
 

  (Register your username / Log in)

Notify:
Hide email:

Small print: All html tags except <b> and <i> will be removed from your comment. You can make links by just typing the url or mail-address.