On Mon, 4 Apr 2011, Benny Pedersen wrote:

On Sun, 3 Apr 2011 15:16:06 -0700, Ori Bani <orib...@gmail.com> wrote:

I played with it and set /etc/mail/spamassassin/local.cf to:

root:root 600 (rw-------)

updates will reset it to 644

...so create /etc/mail/spamassassin/passwords.cf root:root 600 and put just the sensitive entries in it.


On Sun, 3 Apr 2011, Ori Bani wrote:

In what environments does the systemwide local.cf need to be
world readable???

Ones where any user can run spamassassin (vs. spamc) and have it work fully.

If you say "only spamc is supported" as an administrative rule, and you protect your sensitive data as above, you're probably good.

--
 John Hardin KA7OHZ                    http://www.impsec.org/~jhardin/
 jhar...@impsec.org    FALaholic #11174     pgpk -a jhar...@impsec.org
 key: 0xB8732E79 -- 2D8C 34F4 6411 F507 136C  AF76 D822 E6E6 B873 2E79
-----------------------------------------------------------------------
  Ignorance is no excuse for a law.
-----------------------------------------------------------------------
 10 days until Thomas Jefferson's 268th Birthday

Reply via email to