On 6.3.2011 20:07, [email protected] wrote: > I noticed that 2.5% of wt-en1's spam was hitting DNSWL_HI. I asked him > about it, and it turned out that it was all cases where he had set up > forwarding from another server and not added it to trusted_networks > (he then deleted them). I suspect this is true of others: > > > RCVD_IN_DNSWL_MED: > SPAM% > 1.0186 jarif
I had 3 SPAM from mailing lists, I now "whitelisted" them by putting the servers to trusted. 1 seemed not coming thru any mailing list, true SPAM from this host, which triggered DNSWL_MED. $ host 134.7.32.166 166.32.7.134.in-addr.arpa domain name pointer exfe4.staff.ad.curtin.edu.au. So, my corpus should have 1 of those now. -- You're definitely on their list. The question to ask next is what list it is.
signature.asc
Description: OpenPGP digital signature
