Mailing List Archive

smap and qmail
Does anyone have smap running with qmail here?

-Patrick
Re: smap and qmail [ In reply to ]
On Fri, 14 Feb 1997, Patrick Farley wrote:

> Does anyone have smap running with qmail here?

Why would you want to run qmail under smap? Qmail was designed from the
ground up to be secure.

--
Jim Littlefield "Smoking cures weight problems...
eventually..." - Steven Wright
Re: smap and qmail [ In reply to ]
Patrick Farley writes:
> Does anyone have smap running with qmail here?

No. But we just moved a smap-frontend-for-sendmail setup to a
qmail-frontend-for-sendmail setup on one firewall. (Sendmail is still
there only because of the rush we were in to get smap(d) off the
machine, we'll probably translate the userdb/mailertable to a qmail
setup soon.)

Smap was dropping connections all over the place. Symptoms: smap
writes the first 4K bytes of it's own header + message, hangs, the
remote end times out after an hour, smap exits with the following
message in the logs:

Feb 13 12:00:21 <firewall> smap[23750]:
SMTP QUIT with no message <relay>/<ip-address>

This is incorrect, of course, coz the headers + top of body are
already in the 4K buffer it's written out to xmaNNNNNN.

This machine isn't doing much right now, qmail reported 4100
deliveries yesterday. If smap cannot cope with that...

If the above isn't sufficient to dissuade you, you might want to look
hard at how smapd runs the queue...it sleeps when there're bound to be
messages in the queue. Not forking too much might be a feature, to
sleep when there's work available is not.

-Sudish
Re: smap and qmail [ In reply to ]
Olaf Titz <olaf@bigred.inka.de> writes:
>Greg Andrews <gerg@shell.wco.com> writes:
>>
>> The qmail smtp daemon does the first two, and instead of using
>> chroot(), it runs qmail-queue, another unprivileged program,
>> to put the message into the queue.
>
>Sorry for the nitpick, but qmail-queue is a privileged program:
> -rwsr-xr-x 1 qmailq qmail 12292 Dec 15 22:06 qmail-queue
> ^

I was trying to contrast the description from the TIS docs
for smap, which were talking about a root-privileged program.

-Greg
--
Greg Andrews West Coast Online
Unix System Administrator 5800 Redwood Drive
gerg@wco.com Rohnert Park CA 94928
(yes, 'greg' backwards) 1-800-WCO-INTERNET