Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 27 Dec 2003 15:04:32 +1030
From:      "W. Sierke" <ws@frogspawn.cjb.net>
To:        <freebsd-questions@freebsd.org>
Subject:   Re: Using maildrop from sendmail aliases file
Message-ID:  <002e01c3cc32$bc0e7100$8464a8c0@ovirt.dyndns.ws>
References:  <004601c3cb6f$57de4a20$8464a8c0@ovirt.dyndns.ws>

next in thread | previous in thread | raw e-mail | index | archive | help
"W. Sierke" wrote:
> More guessing (as I'm still not clear on the specifics of what is
> failing)...
>
> Is sendmail running as user:smmsp when it's calling maildrop? That would
> explain why maildrop isn't able to change itself to user:vmail, no? Should
> setting the setuid bit circumvent this? When I try that I get:
>
> Dec 26 15:08:20 maildrop[93442]: You are not a trusted user.
>
> where I guess "You" = smmsp?
>
> If this is the case, then it must be a problem for any program run from
> /etc/mail/aliases, is this just too hard to do on a default FreeBSD? Still
> out of my depth here but learning a bit more. :)

I'm curious about the lack of response since I was thinking there was a good
chance this would be a fairly obvious one for our more experienced players.
Am I wrong in thinking that this is just a permissions/security issue? Just
to recap: I'm trying to run maildrop from /etc/mail/aliases with the
following entry:

second-domain-tld:    "|/usr/local/bin/maildrop -d ws@first.domain.tld"

where second-domain-tld is from an entry in virtusertable.

Initially this gave me:

Dec 25 17:05:19 maildrop[75657]: Cannot set my user or group id.


so as per the above included text, I tried making maildrop setuid:

Dec 26 15:08:20 maildrop[93442]: You are not a trusted user.


Any and all hints, suggestions, advice and abuse welcome as all my research
efforts are getting me nowhere at the moment.


Wayne



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?002e01c3cc32$bc0e7100$8464a8c0>