iptables doesn't have per-user ability, does it? I thought it only examined packet headers, which I didn't think had any info about local user in them..

So you're suggesting that the user that runs the sendmail queue processing, er, process, might not have permission within the walls of frontgate to create an outbound connection to the mail server?

[EMAIL PROTECTED] calls]# ps aux | grep sendmail
root 2636 0.0 0.3 8456 3156 ? Ss Jul21 0:02 sendmail: accepting connections smmsp 2644 0.0 0.2 7600 2632 ? Ss Jul21 0:00 sendmail: Queue [EMAIL PROTECTED]:00:00 for /var/spool/clientmqueue
root      1161  0.0  0.0  4656  652 pts/6    S+   15:47   0:00 grep sendmail

Looks like the queue processing process runs as smmsp. I can't access a shell from that account (which is sensible), so I can't try a telnet to port 25 as smmsp.. I can, however, telnet to strutmasters.net:25 from a standard unprivileged account.

Sorry for my ignorance, but I'm not sure where to look next.

~B


Daniel Sterling wrote:
Brian Henning wrote:
Hi Gang,
  I'm seeing what to me is the weirdest thing with sendmail on one of my
hosts.  My firewall machine, to be exact.

Sounds like a firewall issue! ;)

Is the sendmail daemon denied access based on user? what's in your iptables?

-- Dan


--
----------------
Brian A. Henning
strutmasters.com
336.597.2397x238
----------------
--
TriLUG mailing list        : http://www.trilug.org/mailman/listinfo/trilug
TriLUG Organizational FAQ  : http://trilug.org/faq/
TriLUG Member Services FAQ : http://members.trilug.org/services_faq/

Reply via email to