Re: [exim] Hidden Exim version number

Page principale
Supprimer ce message
Répondre à ce message
Auteur: W B Hacker
Date:  
À: exim users
Sujet: Re: [exim] Hidden Exim version number
Michael Chung wrote:
> Dear All,
>
> I want to hidden the version number of my exim SMTP server. I am using Exim
> 4.70 now. But I does not want any one to know the for security reason.
>
> When I telnet to my SMTP server with port 25, I got the following
>
> 220 mai.xxx.com ESMTP Exim 4.70 Wed, 15 Sep 2010 18:33:07 +0800
>
> Can I hidden the version number?
>
> Thank you very much!
>
> Michael


Michael,

See other responses in re using a banner that does not reveal the software.

conducive.org/net answer to a telnet conenction with TOD only, for example.

But therein lies a tale - that is only a part of the battle, and possibly the
least important part.

Outgoing traffic will still carry the Exim and version identification you 'may'
be seeking to conceal.

Note my own posts to this list show:

'...by conducive.net with esmtp (Exim 4.69 (FreeBSD))    '


I've never looked at where THAT needs to be customized, but obviously,
customizing the smtp banner alone is not enough.

...hopefully one of the wiser folks will chip in....

Bill Hacker