On 2016-02-25 15:30, Brandon Long via mailop wrote:
I should point out that "typical" greylisting doesn't work well with
Gmail, since there is no guarantee that the retries will be performed
from the same IP address... in fact, the chances are really high that
it's from a different one.
By typical, I mean based on any tuple which includes IP.
I'd argue that greylisting is really mostly once you know a sender is a
mail server and implements proper retries.
I don't greylist everything, but if anything is suspicious (missing or
invalid rDNS, weird EHLO, etc) I trigger a greylisting, and I've had
good luck replacing the IP in a greylist entry with "SPF:PASS"
indicator, such that a retry from any other IP that passes SPF is
considered the same -- This works for any large sending farm that has
valid SPF records.
--
Dave Warren
http://www.hireahit.com/
http://ca.linkedin.com/in/davejwarren
_______________________________________________
mailop mailing list
mailop@mailop.org
https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop