Penetration Testing mailing list archives

RE: Avoiding Postfix Fingerprinting


From: "Michael Scheidell" <scheidell () secnap net>
Date: Tue, 8 Mar 2005 13:04:28 -0500

 
You could 'fiddle' with return codes,
(do a postconf | more)

All of these can be changed with postconf -e/ edit main.cf and sighup
postfix
(and one of my server responds as 'postfix'.  The other as 'maybe
postfix' with 3 differences...)

So, tweaking the return codes, turning on and off options might do it.

(oh, I suppose you did change the banner to NOT say 'postfix', right?
Maybe you could 'emulate' an sendmail or microsoft exchange server
banner? And invite MS type attacks?)



Current thread: