[exim-dev] [Bug 1469] Bruteforce logentry does show base64 u…

Top Page
Delete this message
Reply to this message
Author: bes
Date:  
To: exim-dev
Subject: [exim-dev] [Bug 1469] Bruteforce logentry does show base64 username
------- You are receiving this mail because: -------
You are on the CC list for the bug.

http://bugs.exim.org/show_bug.cgi?id=1469

bes <bes.internal@???> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |bes.internal@???





--- Comment #4 from bes <bes.internal@???> 2014-04-18 12:28:15 ---
No. This not a bug.
This log string says "rejected <smtp command>" and adds "message" from your
acl.
See full log by ip. It should look like:

2014-04-18 04:28:28 auth_login authenticator failed for mail.bcop.org.uk
([192.168.2.33]) [213.190.177.18]: 535 Incorrect authentication data
(set_id=usuario)
2014-04-18 04:28:28 auth_login authenticator failed for mail.bcop.org.uk
([192.168.2.33]) [213.190.177.18]: 535 Incorrect authentication data
(set_id=usuario)
2014-04-18 04:28:48 H=mail.bcop.org.uk ([192.168.2.33]) [213.190.177.18]
rejected AUTH LOGIN dXN1YXJpbw==: authentication is allowed only once per
message
2014-04-18 04:33:48 SMTP command timeout on connection from mail.bcop.org.uk
([192.168.2.33]) [213.190.177.18]

Pay attention to "set_id=". This is login


--
Configure bugmail: http://bugs.exim.org/userprefs.cgi?tab=email