[Mimedefang] Don not be nasty with 421 [false positives]

2010-10-14 Thread Andrzej Adam Filip
pl.comp.mail ] http://www.sendmail.org/releases/8.13.0 LIBMILTER: If a milter sets the reply code to "421", the SMTP server will terminate the SMTP session with that error. -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu The greatest love is a mother's, then a dog'

Re: [Mimedefang] Access to Access db Information in MD?

2010-07-21 Thread Andrzej Adam Filip
e end, I switched to using SMTP AUTH over > TLS which allowed me to check the macro auth_type. Have you tried to use FEATURE(`delay_checks') in your sendmail.mc? Among other things it allows relaying after successful "SMTP AUTH" without additional hacks. URL(s): http://www.send

Re: [Mimedefang] Access to Access db Information in MD?

2010-07-20 Thread Andrzej Adam Filip
owed the relay because of an entry in the access > file, e.g.: > > kam.is-a-geek.comRELAY The above access entry for dyndns *WILL NOT* work - it requires "closed PTR-A" loop to be effective. [ I have checked there is no such "closed loop" ] What do you wan

Re: [Mimedefang] Reputation in practice

2010-06-20 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> Could you suggest another free email account/service for sending to >> mailing lists? > > Can't you run your own SMTP server? Not for "personal" purposes. > Or try Hotmail/Yahoo/pobox.c

Re: [Mimedefang] Reputation in practice

2010-06-19 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > > [...] > By the way, your outbound SMTP server 213.180.147.167 has a rather > poor reputation. We've been running the Reputation Reporting Protocol > with several hundred sensors for a few months now and we

Re: [Mimedefang] Reputation Reporting Protocol submitted to IETF as an I-D

2010-06-19 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> IMHO you should "generalize" support for different signature types >> e.g. 1 extra byte for signature length and 1 extra byte for signature type > > I'm not sure what you mean by "signat

Re: [Mimedefang] Reputation Reporting Protocol submitted to IETF as an I-D

2010-06-19 Thread Andrzej Adam Filip
1 extra byte for signature length and 1 extra byte for signature type -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu The Almighty in His infinite wisdom did not see fit to create Frenchmen in the image of Englishmen. -- Winston Churchill, 1942 ___

Re: [Mimedefang] IP reputation data collection

2010-01-29 Thread Andrzej Adam Filip
> > Anyway... if you're interested in contributing, please contact me > off-list. For my curiosity: It is intended to be more white-list or black-list? -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu The Lord prefers common-looking people. That is the reason that He makes

Re: [Mimedefang] Spam ethics question

2010-01-14 Thread Andrzej Adam Filip
address on one of their lists, then >> you've caught them violating your request. It's still unsolicited, so >> it's valid data. > > Other option is to raise hell with the mail outsourcing company but does > that really work? Have you tried to report every such

Re: [Mimedefang] Spam ethics question

2010-01-14 Thread Andrzej Adam Filip
actively subscribing > someone is a no-no. But actively un-subscribing not subscribed email addresses is OK => as far as I have heard the effect is almost identical :-) -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu The road to hell is paved with NAND gates. -- J. Gooding _

Re: [Mimedefang] Recipient verification on gateway/secondary-MX

2009-11-25 Thread Andrzej Adam Filip
ciency (valid recipients are cached for 24h; invalid ones for > 1h.) > > Yeah, way more overhead than /etc/mail/access, but in this case it is > worth it. Have you ever hit performance problems caused by access table being to big to be cached in memory? [sendmail can do 30+ access lookups

Re: [Mimedefang] Sendmail::Milter

2009-11-25 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >>> Unfortunately, many aggressive anti-spam techniques that are perfectly >>> usable for BOFHs on personal servers don't scale up to real systems >>> with real users. :-( > >> You ha

Re: [Mimedefang] Sendmail::Milter

2009-11-24 Thread Andrzej Adam Filip
erver. > > Unfortunately, many aggressive anti-spam techniques that are perfectly > usable for BOFHs on personal servers don't scale up to real systems > with real users. :-( You have assumed "no secondary MX", have not you? -- [pl>en: Andrew] Andrzej Adam Filip

Re: [Mimedefang] received headers ofuscation

2009-11-24 Thread Andrzej Adam Filip
ot;internal hosts" under the same netmaster control does not break "the spirit" of the RFC. -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu British education is probably the best in the world, if you can survive it. If you can't there is nothing left for you but the dipl

Re: [Mimedefang] Sendmail plugins [map,mbdb]

2009-11-24 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> Have you used it for standard maps? (e.g. access or virtusertable) > > Yes. > >> YES => Have you tried to reduce (horrible) number of lookups issued by >> "any map" sendmail.c

Re: [Mimedefang] Socket map performance

2009-11-24 Thread Andrzej Adam Filip
We tend to concentrate our optimizations on medium-sized > installations, by which I mean about 25 msgs/second (= about 2 > million/day) or higher. The low-end ones aren't worth worrying about > just because the load is easily managed. -- [pl>en: Andrew] Andrzej Adam Filip : a...

Re: [Mimedefang] Sendmail::Milter

2009-11-24 Thread Andrzej Adam Filip
s with "administratively prohibited"? AFAIK sendmail does not distinguish between reasons why establishing TCP connection have failed. Have I missed something? -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu A commune is where people join

Re: [Mimedefang] Sendmail::Milter

2009-11-24 Thread Andrzej Adam Filip
t;avoiding accumulating excessive evidence" :-) [ I use trapped spam to send abuse reports via spamcop.net ] -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu Your manuscript is both good and original, but the part that is good is not original and the part that is original is not good.

Re: [Mimedefang] Sendmail::Milter

2009-11-23 Thread Andrzej Adam Filip
Matt Garretson wrote: > Andrzej Adam Filip wrote: >> I want custom "rate limiter" on my spamtrap, > > Another idea, if you run linux with iptables, is using > the netfilter "recent" module to block over-enthusiastic > hosts at the network layer. > &g

[Mimedefang] Sendmail::Milter

2009-11-21 Thread Andrzej Adam Filip
o high for "very low on resources (CPU/memory) host serving "second life" as spamtrap. * Mimedefang filters out "too much" *as for spamtrap* :-) -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu Our business in life is not to succeed but to continue to fail in hig

Re: [Mimedefang] Email in Korean language becomes clutterd and unreadable when received.

2009-11-11 Thread Andrzej Adam Filip
*fails* to declare charset used in message header. Quite a few mail server "fills" missing charset for non ascii messages => You may consider providing links (to microsoft web pages) for properly *fixing* it -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu He is not only

Re: [Mimedefang] mimedefang+postfix on debian lenny

2009-11-10 Thread Andrzej Adam Filip
let the postfix user to communicate with it. Is > there any parameters i missed for this ? adding some sleep 10; chmod > 770 and chgrp postfix to the socket seems...weird to me :) Add "postfix" user to "defang" group. -- [pl>en: Andrew] Andrzej Adam Filip : a..

Re: [Mimedefang] mimedefang+postfix on debian lenny

2009-11-10 Thread Andrzej Adam Filip
ld never force the removal of Postfix. According to Debian site mimedefang package for stable (lenny) sendmail at "recommends" list: http://packages.debian.org/lenny/mimedefang -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu They spell it "da Vinci" and pronounce it &quo

Re: [Mimedefang] Email in Korean language becomes clutterd and unreadable when received.

2009-11-10 Thread Andrzej Adam Filip
t; fills missing charset the guessing fails. -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu The only problem with seeing too much is that it makes you insane. -- Phaedrus ___ NOTE: If there is a disclaimer or other legal boilerplate in the above me

Re: [Mimedefang] Mimedefang and sendmail queueing

2009-06-10 Thread Andrzej Adam Filip
eliver some (small) messages via "instant SMTP" and other (*BIG*) messages via "UUCP over TCP". The remote site used "dialup modem speed" connection. UUCP uses *single* TCP connection so it did not suck all bandwidth of the remote side during multi h

Re: [Mimedefang] Mimedefang and sendmail queueing

2009-06-10 Thread Andrzej Adam Filip
re that socket maps can be pretty > slow. We used to use socket maps to control mail routing on our > commercial appliances, but quickly went back to Berkeley DB files for > performance. Have you considered "pushing" "socket map over UDP (over unix socket)" into sendmai

Re: [Mimedefang] Blocking Dictionary Attacks

2009-06-04 Thread Andrzej Adam Filip
You can fill $={VirtHost} "directly": LOCAL_CONFIG C{VirtHost}example.net P.S. The topic has been discussed a few times plus in news:comp.mail.sendmail Search for the threads with _VIRTUSER_STOP_ONE_LEVEL_RECURSION_ [it marks one recipe but you will find references to other by the way] -- [pl>en

Re: [Mimedefang] PGP encyption of outging email

2009-05-07 Thread Andrzej Adam Filip
f the recipient) is required. Secret/private key (of sender) is required for *signing*. > [...] -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu The time spent on any item of the agenda [of a finance committee] will be in inverse proportion to the sum involved. -- C. N. Parkinso

Re: [Mimedefang] $Features not showing Net::DNS

2009-04-09 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> Anyway SpamAssassin avoids "one socket per one DNS query" it its DNS >> lookups perl package > > This is true. On the other hand, it replaces a 75-line function with > 1473 lines of perl.

Re: [Mimedefang] $Features not showing Net::DNS

2009-04-09 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> If you prefer performance perspective: >> It means needless system calls. > > That's a micro-optimization. Have you ever measured SpamAssassin's > performance? Trying to avoid opening 3 o

Re: [Mimedefang] $Features not showing Net::DNS

2009-04-09 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> 2) As I understand relay_is_blacklisted_multi uses Net::DNS bgsend >>"guilty" of horrible wasting of sockets. > > One socket per domain that you check against... not a big deal. > On a bus

Re: [Mimedefang] $Features not showing Net::DNS

2009-04-08 Thread Andrzej Adam Filip
showing errors. > > Thanks for any help. 1) Does $Features{"Net::DNS"} return zero [module absent] or undef [no detect attempt]? 2) As I understand relay_is_blacklisted_multi uses Net::DNS bgsend "guilty" of horrible wasting of sockets. -- [pl>en: Andrew] An

Re: [Mimedefang] Storing "per SMTP session" data (?)

2009-03-07 Thread Andrzej Adam Filip
"David F. Skoll" wrote: > Andrzej Adam Filip wrote: > >> What is the recommended way of storing "per SMTP session" data in >> MIMEdefang filtering script? > >> e.g. to make one "RCPT TO:" check pass data to next "RCPT TO:" check

[Mimedefang] Storing "per SMTP session" data (?)

2009-03-06 Thread Andrzej Adam Filip
What is the recommended way of storing "per SMTP session" data in MIMEdefang filtering script? e.g. to make one "RCPT TO:" check pass data to next "RCPT TO:" check a) in the same transaction (per message) b) in the same SMTP session (per SMTP session) -- [pl>e

Re: [Mimedefang] after body rejects and deliver :-)

2009-01-16 Thread Andrzej Adam Filip
e time to take a look and confirm) is quite unlike "standard delivery" (IMHO). It would break the letter but not the spirit (IMHO). -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu : a...@xl.wp.pl You get what you pay for. -- Gabriel Biel _

[Mimedefang] after body rejects and deliver :-)

2009-01-16 Thread Andrzej Adam Filip
he idea is to a) make sender seen the message as rejected b) allow recipient to report spam delivery attempt [with spam messages delivered to special folder] -- [pl>en: Andrew] Andrzej Adam Filip : a...@onet.eu : a...@xl.wp.pl I am a conscientious man, when I throw rocks at seabirds I