TIP: Click on subject to list as thread! ANSI
echo: bbbs.english
to: Alan Ianson
from: Kim Heino
date: 2019-02-16 13:32:56
subject: Mailer CRAM-MD5 handshake

> I wonder if you have considered adding support for a CRAM-MD5 handshake
> in the binkp mailer? I think that would be a goodthing(TM).

Hashed passwords are always ReallyGoodThing(tm). I have to read latest
BinkP specs and I'll see then...

> I have also noticed that when a file is received by the mailer and there is
> already a file with that name in the inbound the original file is overwritten
> by the new one. That is not a goodthing(TM). Would it be possible to rename a
> file when received if a file by that name already exists in the inbound?

Yes, that's true. Usually you process incoming files immediately so the
attack vector is quite short lived. This is especially important for
incoming mail, as file names could be predictable. Rename would be a good
thing, as long as partially received files are deleted if connection is
lost.

For the reference, my scripts/gotmail.bz is:

int main()
{
        char flag_name;
        int f;

        flag_name = sprintf("%sgotmail.flg", bg_tempdir);
        f = fopen(flag_name, "wb");
        if (f !=- 1)
                fclose(f);
}

And I run following from my crontab:

#!/bin/sh

# incoming fido
if [ -f work/gotmail.flg ]; then
    rm -f work/gotmail.flg
    ./bbbs bogus w > /dev/null 2>&1
    ./bbbs btick > /dev/null 2>&1
    touch work/rescan.2
fi

# outgoing fido
if [ -f work/usermail.flg ]; then
    rm -f work/usermail.flg
    ./bbbs bogus a > /dev/null 2>&1
    touch work/rescan.2
fi

--- BBBS/Li6 v4.10 Toy-4
* Origin: * BCG-Box, On The Air Since 11th February 1987! * (2:222/2)
SEEN-BY: 15/0 19/36 34/999 90/1 104/57 116/18 120/331 123/140 128/2 153/7715
SEEN-BY: 218/700 220/60 222/2 230/150 152 240/1120 250/1 261/38 100 266/512
SEEN-BY: 267/155 275/100 280/464 282/1031 1056 291/1 111 320/119 219 340/400
SEEN-BY: 342/13 396/45 633/267 640/1384 712/132 620 848 770/1 801/161 189
SEEN-BY: 3634/12 5020/1042
@PATH: 222/2 261/38 712/848 633/267

SOURCE: echomail via fidonet.ozzmosis.com

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.