hmm.  i love www.sorbs.net dns BL.  he says we can help by running a server
to help catch more rubbish and report it.   

out of interest, does anybody do that here?

-----Original Message-----
From: Chris Santerre [mailto:[EMAIL PROTECTED]
Sent: Thursday, December 18, 2003 6:50 AM
To: 'Gary Funck'; Spamassassin List
Subject: RE: [SAtalk] bigevil 2.04 posted


Actually my email gateway is behind a firewall :)  I do some really crazy
stuff because I'm a paranoid security nut. Never on the same machine. 1
machine for 1 job. No other processes, no remote access, local only. 

  I don't firewall a lot. You have to really bother me to get placed in the
list. This domain was brand new (Dec 6th) and blatant spam, I just decided
to deny all http + mail traffic from there. More people doing that might
discourage spammers, might not. Sort of a HTTP proxy blacklist. (It would be
nice if I ever get off my butt and finished my squid proxy project. The
server has been running unused, in my office, 5 feet from me for about a
year!) 

Cisco router wouldn't handle 1000's. At least not the 26XXs I have here. But
I doubt I have more then 50 ips listed. 

IPtables is better then ipchains. Stateful inspection and such. So If your
going to learn one, learn iptables. Deny all, allow only what you want. 

HTH
Chris

> -----Original Message-----
> From: Gary Funck [mailto:[EMAIL PROTECTED]
> Sent: Wednesday, December 17, 2003 2:51 PM
> To: Spamassassin List
> Subject: RE: [SAtalk] bigevil 2.04 posted
> 
> 
> 
> Hi Chris, welcome back. I've been running with the prior
> version of BigEvil, and their working great. Thanks for all
> your hard work.
> 
> quick question:
> 
> > For fun, check out http://www.rollie.biz/  , yeah that IP 
> got a listing in
> > my firewall now.
> 
> When you say "firewall", above, does that mean in your MTA 
> sitting on a
> firewalled machine, or in the router? I ask
> because we have a Cisco router here, but I doubt it is 
> feasible to feed it
> thousands of IP addresses to deny routing. <g> Now with 
> ipchains, that sort
> of thing might
> be feasible?
> 
> 
> 
> 
> -------------------------------------------------------
> This SF.net email is sponsored by: IBM Linux Tutorials.
> Become an expert in LINUX or just sharpen your skills.  Sign 
> up for IBM's
> Free Linux Tutorials.  Learn everything from the bash shell 
> to sys admin.
> Click now! http://ads.osdn.com/?ad_id=1278&alloc_id=3371&op=click
> _______________________________________________
> Spamassassin-talk mailing list
> [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/spamassassin-talk
> 


-------------------------------------------------------
This SF.net email is sponsored by: IBM Linux Tutorials.
Become an expert in LINUX or just sharpen your skills.  Sign up for IBM's
Free Linux Tutorials.  Learn everything from the bash shell to sys admin.
Click now! http://ads.osdn.com/?ad_id=1278&alloc_id=3371&op=click
_______________________________________________
Spamassassin-talk mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/spamassassin-talk


-------------------------------------------------------
This SF.net email is sponsored by: IBM Linux Tutorials.
Become an expert in LINUX or just sharpen your skills.  Sign up for IBM's
Free Linux Tutorials.  Learn everything from the bash shell to sys admin.
Click now! http://ads.osdn.com/?ad_id=1278&alloc_id=3371&op=click
_______________________________________________
Spamassassin-talk mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/spamassassin-talk

Reply via email to