Detecting message/rfc822 file type
Alessandro Vesely <[email protected]> Thu, 03 Jan 2013 16:20:21 +0100
| Newsgroups | gmane.ietf.rfc822 |
|---|---|
| Message-ID | <[email protected]> |
Hi all, as you certainly know, the file utility can detect a message/rfc822 mime type from a message. It does so by recognizing the first line of the file. However, comparisons are qualified as case sensitive in the magic file that I attach, except for the Delivered-To and Return-Path that I just patched adding a "cC". I'm about to send the patch to the maintainer of the utility. I'm not patching the "From:" entry, as I never saw a message starting with it. Should that entry be removed? What other fields actually happen to be on the top of the header? For a short legend, the "!:mime" refers to the line just above it, and the "0" that starts the latter is the offset; "string" implies a string comparison and the "/t" is for text; whitespace is escaped in the test string following it, and a message terminates the line. The magic file supports many other operations, including regex, search, indirection, and more. See the man page. I found the latest version (5.11) online at http://www.dsm.fordham.edu/cgi-bin/man-cgi.pl?topic=magic&sect=5 TIA for any contribution. _______________________________________________ ietf-822 mailing list [email protected] https://www.ietf.org/mailman/listinfo/ietf-822
mail.news
(text/plain, 2.2 KB)
#------------------------------------------------------------------------------ # $File: mail.news,v 1.20 2011/12/08 12:12:46 rrt Exp $ # mail.news: file(1) magic for mail and news # # Unfortunately, saved netnews also has From line added in some news software. #0 string From mail text 0 string/t Relay-Version: old news text !:mime message/rfc822 0 string/t #!\ rnews batched news text !:mime message/rfc822 0 string/t N#!\ rnews mailed, batched news text !:mime message/rfc822 0 string/t Forward\ to mail forwarding text !:mime message/rfc822 0 string/t Pipe\ to mail piping text !:mime message/rfc822 0 string/tcC Delivered-To: SMTP mail text !:mime message/rfc822 0 string/tcC Return-Path: SMTP mail text !:mime message/rfc822 0 string/t Path: news text !:mime message/news 0 string/t Xref: news text !:mime message/news 0 string/t From: news or mail text !:mime message/rfc822 0 string/t Article saved news text !:mime message/news 0 string/t BABYL Emacs RMAIL text 0 string/t Received: RFC 822 mail text !:mime message/rfc822 0 string/t MIME-Version: MIME entity text #0 string/t Content- MIME entity text # TNEF files... 0 lelong 0x223E9F78 Transport Neutral Encapsulation Format # From: Kevin Sullivan <[email protected]> 0 string *mbx* MBX mail folder # From: Simon Matter <[email protected]> 0 string \241\002\213\015skiplist\ file\0\0\0 Cyrus skiplist DB # JAM(mbp) Fidonet message area databases # JHR file 0 string JAM\0 JAM message area header file >12 leshort >0 (%d messages) # Squish Fidonet message area databases # SQD file (requires at least one message in the area) # XXX: Weak magic #256 leshort 0xAFAE4453 Squish message area data file #>4 leshort >0 (%d messages) #0 string \<!--\ MHonArc text/html; x-type=mhonarc # Cyrus: file(1) magic for compiled Cyrus sieve scripts # URL: http://www.cyrusimap.org/docs/cyrus-imapd/2.4.6/internal/bytecode.php # URL: http://git.cyrusimap.org/cyrus-imapd/tree/sieve/bytecode.h?h=master # From: Philipp Hahn <[email protected]> # Compiled Cyrus sieve script 0 string CyrSBytecode Cyrus sieve bytecode data, >12 belong =1 version 1, big-endian >12 lelong =1 version 1, little-endian >12 belong x version %d, network-endian