Re: [exim] ClamAV changes needing testing

Top Page
Delete this message
Reply to this message
Author: Frank Elsner
Date:  
To: exim-users
Subject: Re: [exim] ClamAV changes needing testing
On Sat, 5 Jun 2010 04:21:25 -0700 Phil Pennock wrote:
> Folks,


Hello Phil and all others,

> There's an upcoming change to ClamAV, to remove the scanning API which
> released versions of Exim use. I don't know the current schedule for
> that, but when we last checked, on bug 926, it was set for the middle of
> 2010. *cough*
>
> I've committed to CVS my patches to switch Exim to the new scanning API
> and clean up some of that code. This code could *really* do with some
> enthusiastic stress-testing by volunteers. To make it easier to test,
> if you're an admin user then you get to use the new command-line option,
> -bmalware, which takes a filename and subjects that file to Exim's
> malware scanning, whatever that might be.


I did no stress-testing but must say: It works with ClamAV 0.96.1.

But I failed to use the "-bmalware" option:

> exim -v -bmalware ./1275920494.H285242P16468.c64.shuttle.de,S=1266:2,S

LOG: MAIN PANIC
Could not open datafile for message dummy-545383960
LOG: MAIN PANIC
malware acl condition: error while creating mbox spool file
unspool_mbox(): unlinking '/var/spool/exim/scan/dummy-545383960/dummy-545383960.eml'
Malware lookup returned non-okay/fail: 1

> id

uid=181(frank) gid=12203(elsner) groups=6(disk),12(mail),12203(elsner)
               ^^^^^^^^^



And the config file contains
                              admin_groups   = 12203




--Frank Elsner