Classnotes | UNIX03 | RecentChanges | Preferences Showing revision 2 Difference (from revision 2 to current revision)
(minor diff, author diff) (The revisions are identical or unavailable.)
Instead of using Procmail, we will be using Amavisd-New.
Amavisd-New is decended from [AMaViS - A Mail Virus Scanner], which was intended as a snap-in integrator for a number of UNIX anti-virus scanners with an MTA. AMaViS also aimed to have their own in-house anti-virus scanner, but certain technical problems early on in the project required much of the code to be rewritten shortly after their initial stable release.
Amavisd-New is now more of a mail preprocessor, ala Procmail, but with a more limitted focus than other preprocessors. It is meant to easily allow ant-virus and anti-spam scanners to be integrated into an existing mail system, and that is all it is meant for. Whereas using Procmail to simply scan for viruses and spam might be like using a Bazooka to swat a fly, Amavisd-New would be more like simply using a fly-swatter.
That being said, you may still wish to supply Procmail to your users in addition to Amavisd-New. As was said before, Procmail can do things such as preprocess mail into a specific folder tree, or even into alternative accounts, so your users may still have a need for it. However, if they do not need it, and all you wish is for a virus/spam scanner, then Amavisd-New will be sufficient.
Amavisd-New should be run as a non-priviledged user, preferably as a user "amavisd", and should have its own unique group (again, "amavisd" will suffice).
#defending against mail bombs
# Maximum recursion level for extraction/decoding
$MAXLEVELS = 14;
# Maximum number of extracted files
$MAXFILES = 1500;
# bytes (default undef, not enforced)
$MIN_EXPANSION_QUOTA = 100*1024;
# bytes (default undef, not enforced)
$MAX_EXPANSION_QUOTA = 300*1024*1024;
# times original mail size (must be specified)
$MIN_EXPANSION_FACTOR = 5;
# times original mail size (must be specified)
$MAX_EXPANSION_FACTOR = 500;
# SpamAssassin settings
$sa_local_tests_only = 0;
# comment this line out to turn off auto whitelist
$sa_auto_whitelist = 1;
$sa_mail_body_size_limit = 64*1024; # 64KB
# controls adding the X-Spam-Status and X-Spam-Level headers,
$sa_tag_level_deflt = 3.0;
# controls adding 'X-Spam-Flag: YES', and editing Subject,
$sa_tag2_level_deflt = 6.3;
# triggers spam evasive actions:
$sa_kill_level_deflt = $sa_tag2_level_deflt;
$sa_spam_subject_tag = '***SPAM*** ';
$sa_debug = 1; # comment this line out to turn off debugging