[Zope] Re: Mailhost expects different security settings indifferentfolders

Andreas Tille tillea at rki.de
Wed Jan 28 05:54:17 EST 2004


On Wed, 28 Jan 2004, Lennart Regebro wrote:

> Do on no accounts give the right to "Anonymous". If you do people can use
> your system to send spam. I don't think this has ever actually happened with
> Zope and MailHost, but it it theoretically possible. Similar exploits have
> been used with some infamous PHP scripts.
Thanks for opening my eyes: The difference is in the checkbox for
  "use mailhost services"  for   "authenticated" .

At least my stupidity had the advantage of learning about the VerboseSecurity
Product which was worth the effort. ;-)

Thanks

        Andreas.



More information about the Zope mailing list