qmail

qmail
Developer(s) Daniel J. Bernstein
Stable release
1.03 / June 15, 1998 (1998-06-15)
Preview release
netqmail 1.06 / November 11, 2007
Repository cr.yp.to/software/qmail-1.03.tar.gz
Written in C (programming language)
Operating system Unix-like
Type Mail transfer agent
License public domain[1]
Website http://cr.yp.to/qmail.html

qmail is a mail transfer agent (MTA) that runs on Unix. It was written, starting December 1995, by Daniel J. Bernstein as a more secure replacement for the popular Sendmail program. Originally license-free software, qmail's source code was later dedicated in the public domain by the author.[2]

Features

Security

When first published, qmail was the first security-aware mail transport agent; since then, other security-aware MTAs have been published. The most popular predecessor to qmail, Sendmail, was not designed with security as a goal, and as a result has been a perennial target for attackers. In contrast to sendmail, qmail has a modular architecture composed of mutually untrusting components; for instance, the SMTP listener component of qmail runs with different credentials from the queue manager or the SMTP sender. qmail was also implemented with a security-aware replacement to the C standard library, and as a result has not been vulnerable to stack and heap overflows, format string attacks, or temporary file race conditions.

Performance

When it was released, qmail was significantly faster than Sendmail, particularly for bulk mail tasks such as mailing list servers. qmail was originally designed as a way for managing large mailing lists

Simplicity

At the time of qmail's introduction, Sendmail configuration was notoriously complex, while qmail was simple to configure and deploy.

Innovations

qmail encourages the use of several innovations in mail (some originated by Bernstein, others not):

Maildir
Bernstein invented the Maildir format for qmail, which splits individual email messages into separate files. Unlike the de facto standard mbox format, which stored all messages in a single file, Maildir avoids many locking and concurrency problems, and can safely be provisioned over NFS. qmail also delivers to mbox mailboxes.
Wildcard mailboxes
qmail introduced the concept of user-controlled wildcards. Out of the box, mail addressed to "user-wildcard" on qmail hosts is delivered to separate mailboxes, allowing users to publish multiple mail addresses for mailing lists and spam management.

qmail also introduces the Quick Mail Transport Protocol (QMTP) and Quick Mail Queuing Protocol (QMQP) protocols.

Modularity

qmail is nearly a completely modular system in which each major function is separated from the other major functions. It is easy to replace any part of the qmail system with a different module as long as the new module retains the same interface as the original.

Controversy

qmail was designed as a pointed response to Sendmail, which was historically very widely used for SMTP. Bernstein was not shy about pointing out the deficiencies in Sendmail's design and the superior characteristics of qmail, nor did he take pains to replicate Sendmail's behavior, which at the time was the de facto standard for Internet mail delivery. As a result, qmail came under unusually intense scrutiny.

Security reward and Georgi Guninski's vulnerability

Bernstein offered a US$500 reward for the first person to publish a verifiable security hole in the latest version of the software.[3]

In 2005, security researcher Georgi Guninski found an integer overflow in qmail. On 64-bit platforms, in default configurations with sufficient virtual memory, the delivery of huge amounts of data to certain qmail components may allow remote code execution. Bernstein disputes that this is a practical attack, arguing that no real-world deployment of qmail would be susceptible. Configuration of resource limits for qmail components mitigates the vulnerability.[4]

On November 1, 2007, Bernstein raised the reward to US$1000.[1] At a slide presentation the following day, Bernstein stated that there were 4 "known bugs" in the ten-year-old qmail-1.03, none of which were "security holes." He characterized the bug found by Guninski as a "potential overflow of an unchecked counter." "Fortunately, counter growth was limited by memory and thus by configuration, but this was pure luck."[5]

Frequency of updates

The core qmail package has not been updated for many years.[6] New features were initially provided by third party patches, from which the most important at the time were brought together in a single meta-patch called netqmail. Currently, qmail lives on in IndiMail, an open-source mail server platform consisting of the qmail MTA, the Courier IMAP and POP servers, fetchmail, Clam AntiVirus, Bogofilter, tcpserver, daemontools, and several other tools and packages.

Standards compliance

qmail was not designed to replace Sendmail, and does not behave exactly as Sendmail did in all situations. In some cases, these differences in behavior have become grounds for criticism. For instance, qmail's approach to bounce messages (a format called QSBMF) differs from the standard format of delivery status notifications specified by the IETF in RFC 1894, meanwhile advanced to draft standard as RFC 3464, and recommended in the SMTP specification.

Furthermore, some qmail features have been criticized for introducing mail forwarding complications; for instance, qmail's "wildcard" delivery mechanism and security design prevents it from rejecting messages to nonexistent senders during SMTP transactions. In the past, these differences may have made qmail behave differently when abused as a spam relay, though modern spam delivery techniques are less influenced by bounce behavior.

Prior to 1994, the outbound message processor for PCBoard BBS systems was named qmail. Versions 1 through 3 were written by Mark (Sparky) Herring, and version 4 was written by Michael Leavitt. Neither Herring or Leavitt claim a trademark on the name and only wish that there be no confusion between their qmail software and this product which came later.

qmail was released to the public domain in November 2007.[7] Until November 2007, qmail was license-free software, with permission granted for distribution in source form or in pre-compiled form (a "var-qmail package") only if certain restrictions (primarily involving compatibility) were met. This unusual licensing arrangement made qmail non-free according to some guidelines (such as the DFSG), and was a cause of controversy.

qmail is the only broadly deployed public domain software message transfer agent (MTA).

See also

References

  1. 1 2 "Some thoughts on security after ten years of qmail 1.0" (PDF). Retrieved 2007-12-01.
  2. "Information for distributors". I hereby place the qmail package (in particular, qmail-1.03.tar.gz, with MD5 checksum 622f65f982e380dbe86e6574f3abcb7c) into the public domain. You are free to modify the package, distribute modified versions, etc.
  3. "The qmail security guarantee". Retrieved 2007-10-05.
  4. Georgi Guninski. "Georgi Guninski security advisory #74, 2005". Retrieved 2007-10-05.
  5. "Some thoughts on security after ten years of qmail 1.0 [Slide presentation]" (PDF). Retrieved 2008-01-17.
  6. "Life with qmail; History". Retrieved 2007-12-01.
  7. "Bernstein releases code into the public domain". Retrieved 2007-11-30.
This article is issued from Wikipedia - version of the 11/18/2016. The text is available under the Creative Commons Attribution/Share Alike but additional terms may apply for the media files.