On 5/21/2006 08:19, Stan Horwitz wrote:
> 
> Those who prefer to run open lists should at least consider hiding the list
> with "confidential=yes" or perhaps "confidential=local".
> 

Security by obscurity is no security at all, particularly when addresses are
being harvested from compromised systems. See Valdis Kletnieks' earlier posting
in this thread.

The only real protection against forged postings is confirmation on posting
(Send= ...,Confirm), and it works only if the recipient of the confirmation
request actually reads and comprehends the request, rather than simply clicking
the link.

-- 
Paul Russell, Senior Systems Administrator
OIT Messaging Services Team
University of Notre Dame
[log in to unmask]