On 2013-06-07 18:36, Peer-to-Peer
(Spam-Filter.com) wrote:
Pete: I’m not sure that GBUdbIgnoreList.txt file would work for my situation as it seems I would need to trust all IP’s from Comcast and Verizon to catch this one IP below– Correct? Or am I misunderstanding. Perhaps I misunderstand -- but:
If I'm right about the intermediate servers then I presume they
would always be intermediate. So, what we want to do is tell GBUdb
to recognize those servers and ignore them. Then it will find the
next received header behind those and treat it like the source. The process is loosely described here (copied from the page I
recommended):
Ultimately that results in intermediate servers being ignored
always and specifically (by IP) presuming that the actual source
of the message will always be something behind them. This doesn't trust whitelist those servers -- it simply says we
can't treat them as the message source. Let me know if I missed something. _M -- Pete McNeil Chief Scientist ARM Research Labs, LLC www.armresearch.com 866-770-1044 x7010 twitter/codedweller ############################################################# This message is sent to you because you are subscribed to the mailing list <sniffer@sortmonster.com>. This list is for discussing Message Sniffer, Anti-spam, Anti-Malware, and related email topics. For More information see http://www.armresearch.com To unsubscribe, E-mail to: <sniffer-...@sortmonster.com> To switch to the DIGEST mode, E-mail to <sniffer-dig...@sortmonster.com> To switch to the INDEX mode, E-mail to <sniffer-in...@sortmonster.com> Send administrative queries to <sniffer-requ...@sortmonster.com> |
- [sniffer] Re: 2nd level IP scanning GBUdbIg... Peer-to-Peer (Spam-Filter.com)
- [sniffer] Re: 2nd level IP scanning GB... Pete McNeil