Re: Avoiding Postfix Fingerprinting

From: Joachim Schipper (j.schipper@math.uu.nl)
Date: Tue Mar 08 2005 - 11:49:56 EST


On Tue, Mar 08, 2005 at 12:20:24PM +0100, Isidro Labrador wrote:
> I have run nessus against a remote machine, and it has discovered that the
> server is running postfix 1.1.11. Nessus has fingerprinted the server
> through smtpscan (plugin 11421). The question is: is there a way to avoid
> being fingerprinted in Postfix?
>
> Thanks in advance for your answers,
>
> Regardes
> Isidro Labrador Rodr?guez

See postconf(5), under smtpd_banner. (I'm pretty sure Nessus just grabs
the banner; however, some more advanced fingerprinting is possible, if
someone is very knowledgeable.)

                Joachim



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:54:17 EDT