[SA-exim] Question about the headers X-SA-Do-Not-Rej/Run.

Tim Jackson lists at timj.co.uk
Thu Mar 13 20:45:42 2003


Hi Mark, on Thu, 13 Mar 2003 13:39:11 -0700 you wrote:

> In the exim4.conf on Marc's page either the X-SA-Do-Not-Rej or
> X-SA-Do-Not-Run header can get added to the e-mail at RCPT time.  That's
> all well and good, and I understand what's going on.  However, it
> appears that I (or some unscrupulous spammer) could simply add in the
> X-SA-Do-Not-Run header on an incoming SMTP message and force sa-exim to
> skip the spam check.

This is a possibility, yes. If it concerns you, however, you can easily
change this to a unique non-guessable header of your choice (e.g.
"X-SquirbleFlippy: h234fgh92ht9798") - you just need to adjust the
conditions in the SA config file.


Tim



More information about the SA-Exim mailing list