RE: Avoiding Postfix Fingerprinting

From: Michael Scheidell (scheidell@secnap.net)
Date: Tue Mar 08 2005 - 13:04:28 EST


 
You could 'fiddle' with return codes,
(do a postconf | more)

All of these can be changed with postconf -e/ edit main.cf and sighup
postfix
(and one of my server responds as 'postfix'. The other as 'maybe
postfix' with 3 differences...)

So, tweaking the return codes, turning on and off options might do it.

(oh, I suppose you did change the banner to NOT say 'postfix', right?
Maybe you could 'emulate' an sendmail or microsoft exchange server
banner? And invite MS type attacks?)



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:54:17 EDT