[ Sendmail Spam Relay ±â´É ¼³Á¤Çϱâ ]
1. Sendmail8.9.0ºÎÅÍ´Â µðÆúÆ®·Î ¸ÞÀÏ ¸±·¹ÀÌ ±â´ÉÀ» Á¦ÇÑÇϵµ·Ï µÇ¾î ÀÖÀ¸¸ç ÀÌ·¯ÇÑ ±â´ÉµéÀ» Á¦¾îÇϱâ À§ÇÑ ¸¹Àº ȯ°æº¯¼öµéÀ» Á¦°øÇÕ´Ï´Ù.
2. ȯ°æº¯¼öµéÀº sendmail.cfÆÄÀÏ¿¡ ÀúÀåµÇ¾î Áö´Âµ¥, ¸¹Àº °ü¸®ÀÚµéÀÌ Sendmail ÇÁ·Î±×·¥À» ¼³Ä¡Çϴµ¥ ÀÖ¾î °¡Àå ¾Ö·Î¸¦ °Þ´Â ºÎºÐ.
3. SendmailÀÌ anti-spam ±â´ÉÀÌ ÀÖ´Ù°í Çصµ, ÀÌ ÆÄÀÏÀ» ÀûÀýÈ÷ ¸¸µé¾î Àû¿ëÇÏÁö ¸øÇÏ¸é ¹«¿ëÁö¹°ÀÌ µÇ±â ¶§¹®¿¡ °ü¸®ÀÚµéÀº ÀÌ ÆÄÀÏÀÇ Àû¿ë¹æ¹ýÀ» ¹Ýµå½Ã ¼÷ÁöÇÏ¿© ¿î¿µÇÏ¿©¾ß ÇÕ´Ï´Ù.
4. Sendmail 8.9·Î ¹öÀüÀÌ ³ô¾ÆÁö¸é¼ »õ·Ó°Ô Ãß°¡µÈ ±â´ÉÀÌ ¹Ù·Î ÀÌ anti-spam°ú °ü·ÃµÈ ±â´ÉÀ̸ç Access DB¶ó´Â »õ·Î¿î µ¥ÀÌÅͺ£À̽º¸¦ µµÀÔÇؼ ÀÌ°ÍÀÇ ¼³Á¤¿¡ µû¶ó ƯÁ¤ ¸ÞÀϵéÀ» ¹ÞÁö ¾Êµµ·Ï ÇÒ ¼ö°¡ ÀÖ½À´Ï´Ù.
5. ±× ³»ºÎ Çü½ÄÀº ¾Æ·¡¿Í °°½À´Ï´Ù.
spam@hacker.com REJECT
spammail.com REJECT
useful.org OK
211.252.150 RELAY
211.252.151 RELAY
1) spam@hacker.com, spammail.com ¹× 211.252.150°ú °°Àº ù¹ø° Çʵå´Â e-mail ÁÖ¼Ò, µµ¸ÞÀÎ ³×ÀÓ, ³×Æ®¿÷ ³Ñ¹ö µîÀÌ ¿Ã ¼ö ÀÖÀ¸¸ç, µÎ¹ø° Çʵå´Â ÇØ´ç ÁּҷκÎÅÍ ¿À´Â ¸ÞÀÏÀ» ¾î¶»°Ô ó¸®ÇÒ °ÍÀΰ¡¸¦ °áÁ¤ÇÏ´Â µ¥¿¡ »ç¿ëÇÕ´Ï´Ù.
2) spam@hacker.comÀÇ ¸ÞÀÏ»ç¿ëÀÚ ¹× spammail.com µµ¸ÞÀÎÀ¸·Î ºÎÅÍ ¿À´Â ¸ðµç ¸ÞÀÏÀº °ÅÀýÇÕ´Ï´Ù.
3) useful.org µµ¸ÞÀÎÀ¸·ÎºÎÅÍ ¿À´Â ¸ðµç ¸ÞÀÏÀº ¹Þ¾ÆµéÀδٴ ¼³Á¤ÀÔ´Ï´Ù.
4) ¸¶Áö¸·ÀÇ °ÍÀº C-ClassÀÇ ³×Æ®¿öÅ©°¡ 211.252.150, 211.252.151ÀÇ IP¸¦ »ç¿ëÇÏ´Â ¸ðµç IPÁÖ¼Ò¿¡ ´ëÇÏ¿© ¸±·¹À̸¦ Çã°¡ÇÕ´Ï´Ù.
6. À§¿Í °°Àº Çü½ÄÀÇ access DB´Â /etc/mail/access¶õ À̸§À¸·Î ÆÄÀÏ ½Ã½ºÅÛ¿¡ ÀúÀåµË´Ï´Ù.
7. accessÀÇ ÆÄÀϱ¸Á¶´Â ÅؽºÆ® ÆÄÀÏÀ̸ç, SendmailÀÌ ÂüÁ¶(Lookup)ÇÒ ¼ö°¡ ¾ø½À´Ï´Ù.
8. makemapÀ̶õ ÇÁ·Î±×·¥À» »ç¿ëÇÏ¿© SendmailÀÌ ÀνÄÇÒ ¼ö ÀÖ´Â DB ÇüÅ·Π¸¸µé ¾î ÁÖ¾î¾ß ÇÕ´Ï´Ù.
1) ´ÙÀ½ÀÇ ¸í·É¾î¸¦ ½ÇÇàÇÏ¿© °¡´É "/etc/mail/makemap dbm /etc/mail/access < /etc/mail/access"
2) µð·ºÅ丮¸¦ /etc/mailÀ¸·Î ¿Å±ä ´ÙÀ½ À§¿Í °°Àº ¸í·ÉÀ» ÃÄÁÖ¸é, access.dir°ú access.pag¶ó´Â À̸§À¸·Î DB°¡ »ý¼ºµË´Ï´Ù.
3) /etc/mail/access ÆÄÀÏÀ» ¼öÁ¤ÇÒ ¶§¸¶´Ù makemapÀ» »ç¿ëÇØ »õ·Ó°Ô DB¸¦ ¸¸µé¾î ÁÖ¾î¾ß ÇÕ´Ï´Ù.
9. ¹öŬ¸® DB¸¦ ÀÌ¿ëÇÑ´Ù¸é ¾à°£ Çü½ÄÀÌ Æ²·ÁÁö´Âµ¥, ±×·² ¶§´Â ´ÙÀ½°ú °°ÀÌ hash¿É¼ÇÀ» »ç¿ëÇÏ¿©¾ß ÇÕ´Ï´Ù.
# /etc/mail/makemap hash /etc/mail/access < /etc/mail/access
10. ´ÙÀ½Àº ÀÌ·¯ÇÑ accessÆÄÀÏÀ» ÅëÇÏ¿© sendmailÀÌ ÂüÁ¶ÇÒ ¼ö ÀÖ´Â Access DB ÆÄÀÏÀ» »ý¼ºÇÏ´Â ¹æ¹ý ¹× °úÁ¤À» º¸¿©ÁÝ´Ï´Ù.
[penguin:root]:/etc/mail> ls -al access*
-rw-r--r-- 1 root other 71 5¿ù 3ÀÏ 17:25 access
[penguin:root]:/etc/mail> cat access
spam@hacker.com REJECT
spammail.com REJECT
useful.org OK
172.16 RELAY
[penguin:root]:/etc/mail> makemap dbm /etc/mail/access < /etc/mail/access
[penguin:root]:/etc/mail> ls -al access*
-rw-r--r-- 1 root other 71 5¿ù 3ÀÏ 17:25 access
-rw-r--r-- 1 root other 0 5¿ù 3ÀÏ 17:27 access.dir
-rw-r--r-- 1 root other 1024 5¿ù 3ÀÏ 17:27 access.pag
[penguin:root]:/etc/mail> cat access.pag
ñëßÙÏÍÇÂRELAY172.16OKuseful.orgREJECTspammail.comREJECTspam@hacker.com
11. ÀÌ·¯ÇÑ È¯°æÆĶó¹ÌÅ͵éÀÇ »ó¼¼ÇÑ ³»¿ë¿¡ ´ëÇÑ ¼³Á¤À» ¿Ã¹Ù¸£°Ô »ç¿ëÇϱâ À§Çؼ´Â cf/README ÆÄÀÏÀÇ Anti-Spam ȯ°æÁ¦¾î ºÎºÐÀ» ÂüÁ¶Çϱ⠹ٶø´Ï´Ù.
- http://www.sendmail.org/tips/relaying.html
- http://www.sendmail.org/m4/anti-spam.html
12. ´ëºÎºÐÀÇ ÀÌ·¯ÇÑ Anti-Spam Relay ¼Ö·ç¼ÇµéÀº ¸ÞÀÏ °ü¸®ÀÚ°¡ Çã¿ëµÇ´Â Relay µµ¸ÞÀεéÀÇ ¸®½ºÆ®µéÀ» ¼³Á¤ÇÏ´Â °ÍÀ» ÇÊ¿ä·Î ÇÕ´Ï´Ù. ÀÌ ¸®½ºÆ®¿¡´Â ¸ðµç Çã°¡ ÀÎÁõµÈ µµ¸ÞÀε鸦 Æ÷ÇÔÇÏ°í ÀÖ´ÂÁö ¹Ýµå½Ã È®ÀÎÇÏ¿©¾ß Çϸç ÁÖÀÇÇÏ¿©¾ß ÇÒÁ¡Àº ¹Ýµå½Ã MX (Mail Exchanger)»Ó¸¸ ¾Æ´Ï¶ó ´ç½ÅÀÇ µµ¸ÞÀο¡¼ »ç¿ëÇÏ°í ÀÖ´Â °¡»óÀÇ µµ¸ÞÀεéÀÌ Æ÷ÇԵǵµ·Ï ¼³Á¤ÇÏ¿©¾ß ÇÕ´Ï´Ù. ±×·¸Áö ¾ÊÀ¸¸é ´ç½ÅÀÌ º¸³½ ¸ÞÀÏÀÌ °ÅÀýµÉ ¼öµµ ÀÖÀ» °ÍÀÔ´Ï´Ù.
13. ¸ÞÀÏ ¼¹ö°¡ FEATURE(relay_entire_domain)À» »ç¿ëÇؼ 8.9.x¹öÀü ÀÌ»óÀÇ sendmailÀ» ±¸¼ºÇÏ¿´´Ù¸é, ÀÌ´Â µµ¸ÞÀÎ ³»¿¡ ÀÖ´Â ¸ðµç È£½ºÆ®·ÎºÎÅÍÀÇ ¸±·¹À̸¦ Çã¿ëÇÑ´Ù´Â °ÍÀ» ÀǹÌÇÕ´Ï´Ù. ¸¸¾à "relay_entire_domain"ÀÌ È£½ºÆ® À̸§("host." : host.domain.com)À» »ç¿ëÇÑ´Ù¸é µðÆúÆ®·Î sendmailÀº ´ç½ÅÀÇ ½Ã½ºÅÛ¿¡ ÀÖ´Â ¸ðµç IP ÁÖ¼Ò¸¦ üũÇؼ "reverse lookups"¸¦ ¼öÇàÇÏ¿© ¸ÞÀϼ¹öÀÇ ½Ã½ºÅÛ ºÎÇϸ¦ °¡Áß½ÃÅ°°Ô µÉ °ÍÀÔ´Ï´Ù.
14. Spam RelayÀÇ °¡Àå ÁÁÀº ÇØ°á¹æ¹ýÀº .cfÆÄÀÏÀ» Æ÷ÇÔÇÏ¿© relay_entire_domainÀ» »ç¿ëÇÏ´Â ´ë½Å¿¡ IPÁÖ¼Ò¸¦ »ç¿ëÇÏ¿© RelayÈ£½ºÆ®¸¦ ¼³Á¤ÇÏ´Â °ÍÀÌ ¼³Á¤»óÀÇ ¿À·ù¸¦ ÇØ°áÇÒ ¼ö ÀÖ´Â ÁÁÀº ¹æ¹ýÀÌ µÉ ¼ö ÀÖ½À´Ï´Ù.
|