Recent Articles

Microsoft Debuts New Mac Hardware
It's not an UMPC designed to run OS X, but a newly designed keyboard and mouse for the stylishly designed Macintosh computer line.

Apple Pulped In Court By Journalists
Three online journalists sued by Apple gained a victory in appeals court when judges ruled in favor of a petition filed by the Electronic Frontier Foundation regarding the protection of sources.

OS X File Encryption
I'm going to look at two methods for encrypting files on Mac OS X. The first is built in, and uses DisK Utilty to create an encrypted disk image.

Apple Offers Creative Countersuit
Facing litigation from Creative Technology over the iPod interface, Apple has hit back with a countersuit that alleges patent infringement by its tormentor.

Zen May Hold Bad Karma For Apple
Creative has filed a lawsuit against Apple for infringing on its interface patent, and also complained to the US International Trade Commission about iPod imports and sales.

Tree Maps of Disk Space
GrandPerspective and Disk Inventory X are two free Mac OS X apps that give graphical views of where your disk space is being used.

Apple Beats The Beatles Over Trademark
The third time in court was not the charm for record label Apple Corps, which had sought damages from Apple Computer over the use of the Apple logo in association with iTunes.

Apple Beats The Beatles Over Trademark
The third time in court was not the charm for record label Apple Corps, which had sought damages from Apple Computer over the use of the Apple logo in association with iTunes...

Is Steve Jobs building a 'DisneyPod?'
Astute reader Diego Barros noticed this note in Apple's Shareholders meeting notes...

Burst Squeezing Apple Over Patents
Apple sued Burst in January 2006 and sought a declaratory judgment to invalidate Burst's patents on video and audio real-time delivery technology, and now Burst has responded with a counterclaim seeking damages, royalties, and an end to Apple's infringement.

Airlines Want iTunes To Take Flight
Instead of hoarding frequent flyer miles for the possibility of getting a free ticket to a holiday hot spot someday, airlines would like to see those travelers use those miles on something far more attainable.

Apple Releases Boot Camp For Dual-Booting Windows
Apple has released a free public beta of Boot Camp, software that lets you install Windows XP on a Mac...

Corps Calls Apple Rotten
Another lawsuit over the Apple name between the Beatles' Apple Corps business and Apple Computer focuses on the iTunes Music Store and millions of dollars.

Government Backs Apple Against The French
US Commerce Secretary Carlos Gutierrez made it known that the government supports Apple's contention that forcing it to open its DRM scheme, Fairplay, will promote widespread piracy.

Gmail Notifier In Universal Binary
Google has released a new version of their Gmail Notifier for the Mac. It's a Universal Binary version, so it works nicely on both Power PC and Intel Macs.

06.08.06


ClamAV On Mac With Kerio MailServer

By A.P. Lawrence

I downloaded ClamAV source from http://www.clamav.net. A simple ./configure; make; make install in the source directory was all that was required...

... (thogh you do have to install the Xcode Tools from your install cd if you haven't already).

Link: ClamAV

Well, gosh, that was easy. Now what?

Well, that depends on what you plan to do with it. If you only plan to scan files on your drives, there's nothing else you need. If you are planning to use the supplied "clamav-milter" (see Sendmail Milters),you need to add the milter to your mail configuration (and you would have needed to run "./configure --enable-milter" before compiling). See clamav-milter for very basic instructions on adding this milter to sendmail.

In my case, I wanted to use it with Kerio Mailserver.

Kerio MailServer is able to work with several virus scanning engines. The preferred primary is McAfee, but (depending on your OS platform) other plugins can be used. As of version 6.1, they introduced the ability to do dual scanning, which allows each message to be scanned by two different AV products (one must be their McAfee option). Dual scanning can increase the chances of detecting viri.

Now with the 6.2 release (available in beta as I write this), ClamAV support has been added and can be used either as the stand-alone scanner or as the secondary to McAfee.

To use ClamAV with Kerio MailServer you need to get /usr/local/sbin/clamd running on the Mac. That's going to requre editing (with sudo) two configuration files: /usr/local/etc/clamd.conf and /usr/local/etc/freshclam.conf

Enter to Win a FREE iPod Nano or 3 Months of Channel Management - Click Here

ClamAV forces you to at least comment out the "Example" line from these files:

# Comment or remove the line below.
Example


For freshclam.conf that may be all you want or need to do, but at least this made you aware that the file exists and that you do have options to control freshclam. Freshclam is the program that updates Clamav's virus database, so you probably want to set it to run periodically with cron.

You'll need to do a little more with /usr/local/etc/clamd.conf. In addition to commenting out the "Example", you need to set "TCPSocket 3310" and you probably want to set "TCPAddr 127.0.0.1" unless Kerio is running on a different machine than ClamAV.

With these set, you can start /usr/local/etc/clamd. After starting it, you should see it listening on port 3310:

$ sudo /usr/local/sbin/clamd
$ sudo lsof -i:3310
COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME
clamd 18975 root 0u IPv4 0x2f92e88 0t0 TCP localhost:dyna-access (LISTEN)


Of course you'll want clamd starting up on reboot. It would be best to handle that through Launchd but you could also just add it to /etc/rc if you want. Launchd gives you more control to restart if necessary.

Kerio automatically tests Clam with an EICAR file but you can send the same pattern to a local user if you aren't the trusting sort. I tested, and found the expected entry in the Kerio Security Log:

[31/May/2006 16:53:44] Found virus in mail from <tony\@aplawrence.com> to <admin\@localhost>: Eicar-Test-Signature

I'm glad to see this support added to Kerio. I think it would have been better if they had implemented milter support because that would allow even more options for Kerio users, but this is a welcome addition.

*Originally published at APLawrence.com


About the Author:
A.P. Lawrence provides SCO Unix and Linux consulting services http://www.pcunix.com

About MacProNews
MacProNews editors, reporters and contributors deliver Mac users the news they need to stay informed about the Mac and Apple. The MacProNews newsletter is Mac News and More.

MacProNews is brought to you by:

WebProNews.com Jayde.com
MarketingNewz.com SalesNewz.com
CareerNewz.com InvestNewz.com
eCommNewz.com WebsiteNotes.com
AdvertisingDay.com ManagerNewz.com
SearchNewz.com CRMNewz.com


-- MacProNews is an iEntry, Inc. publication --
iEntry, Inc. 2549 Richmond Rd. Lexington KY, 40509
2006 iEntry, Inc.  All Rights Reserved  Privacy Policy  Legal

archives | advertising info | news headlines | free newsletters | comments/feedback | submit article



MacProNews Home Page About Article Archive News Downloads WebProWorld Forums iEntry Advertise Contact Jayde MacProNews News Archives About 

Us Feedback MacProNews - Mac News and More WebProWorld Forum