On Tue, 21 Jun 2005 15:17:14 +0200, Heinrich Rebehn wrote: >Hi all, > >I have configured spamd with greylisting on our OpenBSD Firewall and it >works very well, spam went close to zero :-). There is one issue though >that can cause long delay of mails: >If a mail is sent via a server pool, it can take quite long until it >happens to be sent 3 times from the same ip address and thus get >whitelisted and delivered. With a big server pool this can take hours. > >Would it be possible to change this behaviour so that the whitelisting >is done as soon as the same sender/receiver pair is seen again, >ignoring the ip address? This could speed up things a bit. > >I have been browsing through the sources in an attempt to hack this >myself, but my programming experience is as sparse as the comments are >;-). Can someone point me to the exact localtion? Or am i completely on >the wrong trip? > >Regards, > > Heinrich >-- > >Heinrich Rebehn > >University of Bremen >Physics / Electrical and Electronics Engineering >- Department of Telecommunications - > >Phone : +49/421/218-4664 >Fax : -3341 > >
You DO NOT want to do this! At times there are "storms" of attempts to send mail with the same purported sender and recipient. They come from widely separated addresses and I suspect they are zombies trying to deliver spam if not worms. Right now in spamdb I see one pretending to come from a long [EMAIL PROTECTED] but really originating at verizon in one case and Hungary in another. Your proposed patch would let these through and at times I have seen more than fifteen simultaneously targetting one of my spamtrap addresses. They are all (so far) one-shot wonders and none gets through because none tries again. STFA for a patch that whitelists a whole subnet. I think I saw such a thing a while ago. Rod/ >From the land "down under": Australia. Do we look <umop apisdn> from up over? Do NOT CC me - I am subscribed to the list. Replies to the sender address will fail except from the list-server.