Learn the techniques necessary to build a secure e-mail server using the UNIX operating system and Open Source e-mail server software.
  • This is one of the first books to address UNIX e-mail security.
  • E-mail software packages discussed in this book are widely used, and administrators need documentation that instructs how to install, configure, and operate them in a secure environment.
  • Administrators will become familiar with packages and utilities that can be used to increase the security of the e-mail server.
Three separate e-mail server packages are discussed: sendmail, qmail, and Postfix. Each security topic provides hands-on examples using each of the three e-mail packages. The book primarily focuses on providing instructions for Internet Service Providers (ISPs) and small corporate network administrators for configuring Open Source e-mail packages to provide secure e-mail services to customers. Additional information educates the reader on basic e-mail principles and protocols.
Richard Blum has been a network and systems administrator for more than 10 years for a large government organization. He has had the opportunity to use Linux in a network environment as an e-mail server, FTP server, and network monitoring device for about 5 years. This experience has allowed him to gain an understanding of large e-mail systems on the Internet. He also volunteers for a non-profit organization doing network administration. On this particular project, he has been involved with a team that designs and installs a local network file system and an Internet e-mail system for a small 30 user network. By working in both large and small network environments, he can relate to the problems of most network administrators in the field.
1. E-mail Basics.
Unix E-mail Systems. E-mail Protocols. E-mail Security. Summary.2. SMTP.
SMTP Description. Extended SMTP. Message Formats. Summary.3. POP3.
Description of the Post Office Protocol. POP3 Authentication Methods. POP3 Client Commands. Open Source POP3 Implementations. Summary.4. IMAP.
Description of the Interactive Message Access Protocol. IMAP Authentication Methods. IMAP Client Protocol. Open Source IMAP Implementations. Summary.5. MIME.
The Uuencode Program. MIME and Binary Data. S/MIME. Open Source MIME Packages. MIME with PGP. Summary.6. Reading E-mail Headers.
Decoding Forged E-mail Headers. Using DNS Programs to Track E-mail Hosts. Using External Spam Services. Summary. II. SERVER SECURITY.
7. Securing the UNIX Server.
Monitoring Log Files. Preventing Network Attacks. Blocking Network Access to the Server. Detecting Break-ins. Summary.8. The sendmail E-mail Package.
What Is sendmail? Configuring sendmail. Using the m4 Preprocessor. The sendmail Command Line. Installing sendmail. Securing sendmail. Summary.9. The qmail E-mail Package.
What Is qmail? Control Files. Downloading and Compiling the qmail Source Code. Configuring qmail. Using the qmail sendmail Wrapper. Receiving SMTP Messages. qmail and Security. Summary.10. The Postfix E-mail Package.
What Is Postfix? Downloading and Compiling Postfix. Configuring Postfix. Starting Postfix. Postfix and Security. Summary.11. Preventing Open Relays.
Open and Selective Relaying. Configuring Selective Relaying. Avoiding Open Relays. Summary.12. Blocking Spam.
Methods Used to Block Spam. Implementing Spam Blocking. Summary.13. Filtering Viruses.
Methods Used to Block Viruses. Implementing Virus Filtering. Implementing Virus Scanning. Summary. III. E-MAIL SERVICE SECURITY.
14. Using E-mail Firewalls.
The SMTP VRFY and EXPN Commands. Disabling the VRFY and EXPN Commands. Using an E-mail Firewall. Creating an E-mail Firewall. Summary.15. Using SASL.
What Is SASL? The Cyrus-SASL Library. Implementing SASL. Testing the SASL Server. Summary.16. Secure POP3 and IMAP Servers.
The SSL Family of Protocols. The OpenSSL Package. Using UW IMAP with SSL. Summary.17. Secure Webmail Servers.
What Is Webmail? The TWIG Webmail Server. The MySQL Database. The Apache Web Server with PHP Support. Installing the TWIG Webmail Server. Summary.

Rich Blum has worked for the past 13 years as a network and systems administrator for the U.S. Department of Defense at the Defense Finance and Accounting Service. There he has been using Unix operating systems as an FTP server, TFTP server, e-mail server, mail list server, and network monitoring device in a large networking environment. Rich currently serves on the board of directors for Traders Point Christian Schools and is active on the computer support team at the school, helping to support a Microsoft network in the classrooms and computer lab of a small K-8 school. Rich has a bachelors of science degree in electrical engineering, and a masters of science degree in management, specializing in Management Information Systems, both from Purdue University. When Rich is not being a computer nerd, he is either playing electric bass for the church worship band or spending time with his wife, Barbara, and two daughters, Katie Jane and Jessica.

In this book you'll learn the technology underlying secure e-mail systems, from the protocols involved to the open source software packages used to implement e-mail security. This book explains the secure MIME (S/MIME) protocol and how it is used to protect data transmitted across the Internet. It also explains the concepts crucial to stopping spam messages using the three most popular open source mail packages--sendmail, qmail, and postfix. It presents detailed configurations showing how to avoid accepting messages from known open relays and how to filter known spam messages. Advanced security topics are also covered, such as how to install and implement virus scanning software on the mail server, how to use SMTP authentication software, and how to use the SSL protocol to secure POP, IMAP, and WebMail servers.