[Mailman-Users] Re: Malicious web subscription requests

2025-06-24 Thread Bill Cole
cribe requests to seemingly random people? I don't think we know. I think we do. The targets are not random. It is intentional directed harassment. There are still enough unverified subscription forms out there to amass a formidable mailbomb. -- Bill Cole b...@scconsult.com or billc...@

[Mailman-Users] Re: Writing to list bounces with 'user doesn't exist'

2025-05-12 Thread Bill Cole
t should be without full 'postconf -Mf' and 'postconf -nf' output and maybe more details about why you have a "dovecot-smtp" transport defined using lmtp at all. E.g. On all my Mailman boxes with postfix "virtual_transport = virtual" but that's also t

[Mailman-Users] Re: Bug in Mailman version 2.2.0 We're sorry, we hit a bug!

2025-03-29 Thread Bill Cole
archive.com/mailman-users@python.org/ https://mail.python.org/archives/list/mailman-users@python.org/ Member address: mailmanu-20190...@billmail.scconsult.com -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo@toad.social and many *@billmail.scconsult.com addresses) No

[Mailman-Users] Re: Text encoding problems

2025-03-28 Thread Bill Cole
ons to the version of Mailman 2 that the rest of the world uses. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo@toad.social and many *@billmail.scconsult.com addresses) Not Currently Available For Hire -- Mailman-Use

[Mailman-Users] Re: Mailman subscribe confirmation

2024-07-05 Thread Bill Cole
illmail.scconsult.com -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo@toad.social and many *@billmail.scconsult.com addresses) Not Currently Available For Hire -- Mailman-Users mailing list -- mailman-users@python.org T

[Mailman-Users] Re: Delayed messages

2022-10-08 Thread Bill Cole
r provider about how Exim is configured. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not Currently Available For Hire -- Mailman-Users mailing list -- mailman-users@pyt

[Mailman-Users] Re: Odd issue after setting Mailman to use https by default.

2022-06-21 Thread Bill Cole
python.org/ -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not Currently Available For Hire -- Mailman-Users mailing list -- mailman-users@python.org To unsubscribe send an email

[Mailman-Users] Re: group mismatch

2022-05-16 Thread Bill Cole
end user to deploy SA for their own mail without root access. Also: procmail is antique abandonware that no one should use in 2022, but it can be very hard to replace. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not

[Mailman-Users] Re: Plus addressing

2022-03-22 Thread Bill Cole
or similar tools can see the address of every person posting to the list. If one uses an email address in a public way for long enough, it will get to spammers. Even if you don't use it publicly, spammers may land on it with guesses and other users might typo their addresses to yours when giv

[Mailman-Users] Re: Plus addressing

2022-03-22 Thread Bill Cole
(or other related 'tagging' schemes) to support such rules. Of course, that's not the business of a mailing list operator. We should assume that our users know what they're doing and that it isn't our business unless they need help. -- Bill Cole b...@scconsult.com or billc

[Mailman-Users] Re: max value of mailman2

2022-02-15 Thread Bill Cole
sion lists more than it is for high-volume announcement/marketing lists. It takes significant MTA and backend tuning to mail more than a few thousand users in a reasonable amount of time, and Mailman is not always the right choice for that. -- Bill Cole b...@scconsult.com or billc...@apach

[Mailman-Users] Re: Should CSRF check disregard case of addresses?

2021-12-13 Thread Bill Cole
omain. You cannot programmatically determine whether 2 different local-parts are equivalent unless you run the delivery system for them. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not Currently Available For

[Mailman-Users] Re: Highlighted text disappears

2021-03-28 Thread Bill Cole
messages. Many users (including myself) also preferentially only display the plaintext version of multipart messages and so only reply to what is in that part. Because any "highlighting" is only present in non-plaintext email, lists and users who stick to plaintext do not see

[Mailman-Users] Re: CPU %-usage surge associated with list archives

2020-11-17 Thread Bill Cole
On 16 Nov 2020, at 2:17, Stephen J. Turnbull wrote: Bill Cole writes: On 15 Nov 2020, at 22:18, Stephen J. Turnbull wrote: I don't see why access to archives would cause a security issue, Thanks for the reply! Also FWIW, I'm explaining here why I don't think this is a Mai

[Mailman-Users] Re: CPU %-usage surge associated with list archives

2020-11-15 Thread Bill Cole
7;t instantaneous and stomps on any customization that hasn't been written into the persistent policy. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not Currently Available For Hire -

[Mailman-Users] Re: mailman v2.x

2020-09-20 Thread Bill Cole
"openssl," then on any recent system it is actually a recent and reasonably safe LibreSSL. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not For Hire (currently)

[Mailman-Users] Re: Problem running CGI - Mailman Admin UI

2020-07-24 Thread Bill Cole
FAQ: http://wiki.list.org/x/AgA3 Security Policy: http://wiki.list.org/x/QIA9 Searchable Archives: https://www.mail-archive.com/mailman-users@python.org/ https://mail.python.org/archives/list/mailman-users@python.org/ -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybo

Re: [Mailman-Users] The last release from the GNU Mailman project (was: Handling Munged From Addresses)

2020-02-27 Thread Bill Cole
have vague recollections that both Barry and Mark have said repeatedly that doing so would be substantially more effort than they are willing to put into anything built on the MM2 architecture. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scc

Re: [Mailman-Users] mailman 2.1.18 for RHEL 5

2020-02-17 Thread Bill Cole
inate versioning. I know from working on the SpamAssassin security team that RH is particularly attentive to security issues and other major bugfixes. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not For Hire (curr

Re: [Mailman-Users] Apache subscription Referer rules

2020-01-13 Thread Bill Cole
ep is to read https://httpd.apache.org/docs/2.4/rewrite/access.html#blocked-inline-images and adapt the example to your site. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Not

Re: [Mailman-Users] mailman not functional

2019-10-17 Thread Bill Cole
-responsive DNS server or servers but eventually hits one that works, login and anything involving email transport will be plagued by delays. So: check /etc/resolv.conf and make sure all listed servers are responding to queries. -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo

Re: [Mailman-Users] messages fail to @yahoo @aol @outlook

2019-07-28 Thread Bill Cole
ders' "p=reject" DMARC policies. If a mailing list makes any change to messages, it should also either munge From or wrap messages to avoid problems. You can do that for all messages, only for "p=reject" sender domains, or for both "p=reject" and "p=qu

Re: [Mailman-Users] messages fail to @yahoo @aol @outlook

2019-07-28 Thread Bill Cole
On 28 Jul 2019, at 11:25, Loren Engrav via Mailman-Users wrote: > and searched archives > and see this goes back years and years > is there a quick fix I missed in the archives? This looks like a DMARC problem. See https://wiki.list.org/DEV/DMARC -- Bill Cole b...@scconsult.com

Re: [Mailman-Users] Trying to secure the list server web page

2019-03-01 Thread Bill Cole
o note: if you do this on a machine managed by cPanel, you will need to redo the last step ($prefix/bin/withlist -l -r fix_url) daily after the nightly maintenance cron job, which reverts whatever fix_url does. There is an open bug at cPanel (opened last week) to fix that. -- Bill Cole b...@sccon

Re: [Mailman-Users] How to kill zombie pending moderator requests?

2019-02-16 Thread Bill Cole
painless as possible. Thanks for the help! -- Bill Cole b...@scconsult.com or billc...@apache.org (AKA @grumpybozo and many *@billmail.scconsult.com addresses) Available For Hire: https://linkedin.com/in/billcole -- Mailman-Users mail

Re: [Mailman-Users] How to kill zombie pending moderator requests?

2019-02-16 Thread Bill Cole
On 16 Feb 2019, at 13:00, Mark Sapiro wrote: On 2/15/19 9:40 AM, Bill Cole wrote: I recently migrated a set of Mailman lists from a standard 2.1.18 installation (on ancient RedHat) to a cPanel host (CentOS 7) running Mailman 2.1.27. One glitch in that migration involves a pending moderation

[Mailman-Users] How to kill zombie pending moderator requests?

2019-02-16 Thread Bill Cole
ck means, although I expect it is relevant. The other 3 lists that were migrated in the same way at the same time which did not have pending issues have similar pending.pck contents but DO NOT generate the phantom notifications. My first impulse is to just clobber the pending.pck file, but I am

Re: [Mailman-Users] Which user is harvesting sender emails?

2016-08-19 Thread Bill Cole
On 19 Aug 2016, at 11:13, Jim Popovitch wrote: On Fri, Aug 19, 2016 at 11:01 AM, Bill Cole wrote: On 19 Aug 2016, at 10:39, Jim Popovitch wrote: PRVS/BATV How is that relevant to this issue? Well it's not, it's only relevant to what you and Mark were discussing (modificati

Re: [Mailman-Users] Which user is harvesting sender emails?

2016-08-19 Thread Bill Cole
On 19 Aug 2016, at 10:39, Jim Popovitch wrote: PRVS/BATV How is that relevant to this issue? BATV only applies to the envelope sender address, which any proper mailing list (including any Mailman list) completely replaces with its own bounce address so that bounces go to the mailing list so

Re: [Mailman-Users] Which user is harvesting sender emails?

2016-08-19 Thread Bill Cole
On 18 Aug 2016, at 19:36, Mark Sapiro wrote: Altering the From: based on recipient can be done by modifying the code. Say you have a message "From: Ann User " and you want to change that to "From: Ann User " where xxx is a unique code for each recipient. Please, don't anyone do that, ever.

Re: [Mailman-Users] Many users unsubscribed at once (not by me)

2015-12-14 Thread Bill Cole
On 13 Dec 2015, at 13:56, Mark Sapiro wrote: In fact, the fact that almost all the unsubscribed users were hotmail makes it seem that this is not DMARC, but more likely hotmail (Microsoft) blocking the sending IP. And with the one other being live.com.au (roughly: Australian Hotmail) it becom

Re: [Mailman-Users] merging 2 mailing lists

2015-07-07 Thread Bill Cole
On 7 Jul 2015, at 7:15, Laura Creighton wrote: In a message of Tue, 07 Jul 2015 00:33:00 -0400, "Bill Cole" writes: On 6 Jul 2015, at 9:26, Laura Creighton wrote: 2 somebodies I know want to merge their mailing lists. Have they bothered asking each and every subscriber and r

Re: [Mailman-Users] merging 2 mailing lists

2015-07-06 Thread Bill Cole
On 6 Jul 2015, at 9:26, Laura Creighton wrote: 2 somebodies I know want to merge their mailing lists. Have they bothered asking each and every subscriber and received an affirmative reply? No? Imagine my shock... The correct answer to this is "No, you can't. You don't have subscriber permi

Re: [Mailman-Users] What would your dream Mailman web interface look like?

2015-04-07 Thread Bill Cole
On 6 Apr 2015, at 20:02, Andrew Stuart wrote: Sounds like not working with JavaScript is something important to you. What’s the thinking behind wanting to work without JavaScript? Isn’t it kinda hard to navigate the modern web without JavaScript? I don't know the original poster's motivatio

Re: [Mailman-Users] Is Mailman 2.1 not plushack aware?

2013-06-02 Thread Bill Cole
On 2 Jun 2013, at 11:50, Tanstaafl wrote: On 2013-06-01 1:40 PM, Bill Cole wrote: It is altogether always wrong for ANY mail software outside of a domain to parse the local part of an address in that domain except for a tiny handful of standard special local parts (e.g. "postmaster&qu

Re: [Mailman-Users] Is Mailman 2.1 not plushack aware?

2013-06-01 Thread Bill Cole
On 30 May 2013, at 14:30, Jay Ashworth wrote: I just subscribed to the virtualgl-users list at SF, and I subscribed with a plushacked email address, jra+vgl@ Got the confirmation email ok, of course, but when I tried to send something, it bounced "because I'm not subscribed to the list". I'v

Re: [Mailman-Users] From Header Changed

2013-02-25 Thread Bill Cole
On 25 Feb 2013, at 8:26, Dennis Putnam wrote: I guess I'm not surprised either. Unfortunately with ISPs blocking outgoing SMTP there are few alternatives. That is generally a function of what sort of access you buy. The sad reality is that blocking port 25 helps limit the scale & cost of abus

Re: [Mailman-Users] reject on max_message_size exceeded

2012-12-07 Thread Bill Cole
On 7 Dec 2012, at 15:52, Carlos R. Pasqualini wrote: Hi i cannot find any way to reject emails (coming from valid senders) which exceeded the maximum allowed message size. mailman currently put them on hold, but i want to instantly reject it with an alert to the user. the only thing i found

Re: [Mailman-Users] split incoming mailserver from mailman

2012-08-16 Thread Bill Cole
On 16 Aug 2012, at 8:33, Marcus Schopen wrote: Hi, I'm looking for a way to separate the incoming mailserver which handles the addresses from the mailman instance, which sends mails out. I'm running sendmail as MTA. The wrapper in /etc/aliases ("|/var/lib/mailman/mail/mailman ...) seems to ha

Re: [Mailman-Users] SPF MAIL FROM check failed: [MAIL_FROM]

2012-05-09 Thread Bill Cole
On 9 May 2012, at 20:32, David wrote: On Wed, May 9, 2012 at 4:01 PM, David wrote: Re: Giving away the secrets of 99.3% email delivery 1. Constantly monitor spam blacklists. We have a set of Nagios alerts that regularly check if we’re listed on any delivery blacklists, and whenever they go o

Re: [Mailman-Users] Is Character Permitted

2011-11-09 Thread Bill Cole
Mailman Admin wrote, On 11/9/11 10:25 AM: On 2011-11-09 09:55, David Andrews wrote: Is the "&" character allowed in a list name, such as in: "art&artists?" No, as it must be a valid email address. In email addresses are only the following characters allowed a to z A to Z 0 to 9 . - _ That

Re: [Mailman-Users] exclude lists question

2011-01-06 Thread Bill Cole
Mark Prewitt wrote, On 1/6/11 1:54 PM: Good Day, I have two lists that have essentially the same members except for one person. Unfortunately, they are client facing lists and we have different clients using them so we cannot combine them or eliminate one which would make this so much easier.

Re: [Mailman-Users] The Mailman CGI wrapper encountered a fatal error

2003-11-04 Thread Jim Cole
On Monday, November 3, 2003, at 12:03 PM, patkins wrote: ./configure --with-mail-gid=mailman --with-cgi-gid=mailman --with-username=mailman --with-groupname=mailman Isn't the --with-cgi-gid option suppose to take the group that your *web server* runs as? I would assume that group is something ot

Re: [Mailman-Users] The Mailman CGI wrapper encountered a fatal error

2003-11-03 Thread Jim Cole
On Monday, November 3, 2003, at 12:03 PM, patkins wrote: The user and group exist: group > mailman:x:506: passwd > mailman:x:506:506::/usr/local/mailman:/dev/null ... Mailman CGI error!!! The Mailman CGI wrapper encountered a fatal error. This entry is being stored in your syslog: Failure to fin

[Mailman-Users] member_posting_only issue under 2.0.6

2003-10-24 Thread Cole
Until very recently I was running Lyris which I was fairly happy with. However edicts came down from above and I am now trying to fine tune the configuration of Mailman 2.0.6 which I inherited from someone else. In short I am very new to Mailman. I have set the member_posting_only to "yes" which

[Mailman-Users] Dear Python

2001-12-12 Thread adam cole
at I've been trying to get these answers myself, but finding myself very lost. Thanks so much. Adam Cole www.feldenkraisinfo.com -- Mailman-Users maillist - [EMAIL PROTECTED] http://mail.python.org/mailman/listinfo/mailman-users

[Mailman-Users] Unsubscribing

2001-05-08 Thread John David Cole
Is there a way to keep people from unsubscribing? I know you can monitor subscriptions, but i did not see anything about monitoring unsubscribing. Thanks for the help. John David Cole University of Tennessee Health Science Center Computing & Telecommunications (901)448-

[Mailman-Users] attachments

2001-04-02 Thread John David Cole
is there a way to block attachments? or am i just going to have to limit the size of the mail message? John David Cole University of Tennessee Health Science Center Computing & Telecommunications (901)448-5848 -- Mailman-Users mail

[Mailman-Users] AttributeError: UnixMailbox

2001-02-14 Thread Greg Cole
Hi, I'm having difficulty installing mailman (2.01) (python 2.0) on MacOS X PB. The configure, permissions, compilation, etc. seems to be fine but the "make install" finally terminates with the following: (also, any invocation of scripts like "newlist" terminate with the same): . . . Compiling