Helga Mayer: > > Hi, > > I'm testing postscreen on our secondary smtp server. > First results: > https://rz-static.uni-hohenheim.de/hmayer/tmp/Screenshot-68.png > There are hardly anymore rejects. I did not yet adjust mailgraph for the > drops.
That is an interesting picture. It looks like dropping the pregreeters made your reject rates already go down quite a bit. Of course it is known that spammers prefer to use secondary MX hosts because these hosts often serve many domains and therefore have more permissive settings. This weekend I finally found time to update the non-production release. This version should support "no DNS blocklists" without panic, and it also has better support for "postfix reload". There are still plenty of rough edges. It does not yet remove entries from the btree database so the file needs to be renamed periodically, and it does not yet log the sender/recipient of rejected mail. For that reason alone I don't recommend turning on DNS blocklist lookups except for gathering statistics. I'm still open for program name suggestions. If someone has a better name than "swatter" or "halligan" let me know. Once the name changes, all the configuration parameters will change, too. Wietse