Re: lots of missed spam/false negatives from .info TLD being marked with URIBL_RHS_DOB

2017-05-30 Thread John Hardin
On Tue, 30 May 2017, Robert Kudyba wrote: I note that message hit BAYES_00. If content like that is getting a "strong ham" Bayes score, you should review your training processes and Bayes corpora - you *do* keep copies of messages you train Bayes with, right? :) Yes just re-synced. Did you d

Re: lots of missed spam/false negatives from .info TLD being marked with URIBL_RHS_DOB

2017-05-30 Thread Robert Kudyba
> For the past few days lots of missed spam has been getting through, running >>> SA 3.4.1 on Fedora 25 with sendmail. I see that they are being tagged with >>> URIBL_RHS_DOB, i.e., domains registered in the last five days. Since we >>> are not running our own DNS server (yet--need permission from

Re: lots of missed spam/false negatives from .info TLD being marked with URIBL_RHS_DOB

2017-05-29 Thread David Jones
>From: John Hardin   >On Mon, 29 May 2017, Robert Kudyba wrote: >> For the past few days lots of missed spam has been getting through, running >> SA 3.4.1 on Fedora 25 with sendmail. I see that they are being tagged with >> URIBL_RHS_DOB, i.e.,  domains registered in the last five days. Since

Re: lots of missed spam/false negatives from .info TLD being marked with URIBL_RHS_DOB

2017-05-29 Thread John Hardin
On Mon, 29 May 2017, Robert Kudyba wrote: For the past few days lots of missed spam has been getting through, running SA 3.4.1 on Fedora 25 with sendmail. I see that they are being tagged with URIBL_RHS_DOB, i.e., domains registered in the last five days. Since we are not running our own DNS se

lots of missed spam/false negatives from .info TLD being marked with URIBL_RHS_DOB

2017-05-29 Thread Robert Kudyba
For the past few days lots of missed spam has been getting through, running SA 3.4.1 on Fedora 25 with sendmail. I see that they are being tagged with URIBL_RHS_DOB, i.e., domains registered in the last five days. Since we are not running our own DNS server (yet--need permission from our CISO) URI