Can anyone explain to me what the URIBL_SBL rule does (I.e. which list Is used)
I have an email that this rule catches because of a email address inside it.
The SpamAssassin report lists it as : 0.6 URIBL_SBL Contains an URL listed in the SBL blocklist [URIs: gov.ru]
The URIBL_SBL rule checks the IPs of the nameservers listed in the NS record against the spamhaus SBL list.
[EMAIL PROTECTED] mail]# dig ns gov.ru
; <<>> DiG 9.2.1 <<>> ns gov.ru ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 61199 ;; flags: qr rd ra; QUERY: 1, ANSWER: 4, AUTHORITY: 0, ADDITIONAL: 2
;; QUESTION SECTION: ;gov.ru. IN NS
;; ANSWER SECTION: gov.ru. 345600 IN NS ns.rtcomm.ru. gov.ru. 345600 IN NS ns1.gov.ru. gov.ru. 345600 IN NS ns.gov.ru. gov.ru. 345600 IN NS ns.relarn.ru.
host ns.rtcomm.ru ns.rtcomm.ru has address 213.59.0.3
213.59.0.3 is listed in the SBL, in the following records:
* <http://www.spamhaus.org/sbl/sbl.lasso?query=SBL13545>SBL13545
http://www.spamhaus.org/sbl/sbl.lasso?query=SBL13545