On 8/9/2011 2:41 PM, Wietse Venema wrote: [snip discussion of minimizing deep protocol test delays]
What do you think about an option to skip the "after 220" tests based on dnswl results? If an IP is listed on a dnswl, it's quite likely a real mail server and would pass all the disruptive tests eventually. I suppose we could overload the postscreen_dnsbl_threshold parameter for this, something like postscreen_dnsbl_threshold = reject-boundary;pass-boundary where reject-boundary is required (default 1), pass-boundary is optional/no default/unset. example = 1;-1 -- Noel Jones