On 21/02/2025 05:26, Alex wrote:
What should the policy be on blocking Google IPs?

*  2.3 RCVD_IN_PSBL RBL: Received via a relay in PSBL
*      [209.85.208.194 listed in psbl.surriel.com [1]]
*  2.2 RCVD_IN_SENDERSCORE_30_49 RBL: Senderscore.org score of 30 to 49
*      [209.85.208.194 listed in score.senderscore.com [2]]
*  0.0 RCVD_IN_MSPIKE_H2 RBL: Average reputation (+2)
*      [209.85.208.194 listed in wl.mailspike.net [3]]

These are IPs used by millions(?) of users that apparently have been abused by enough to warrant the above to penalize them, but the alternative is either having to welcomelist the sender or somehow remove the IP locally from being checked. Both options are only after they've been blocked at least once. And this is only one Google IP - how many others could there be?

Ideas greatly appreciated.

On 21.02.25 06:33, Noel Butler wrote:
No special treatment, if you need to, whitelist by sender, whitelisting google en mass is fraught with danger, they are in the top 3 biggest spam emitters of all time round these parts.

avoiding checking google ranges in DNS*Ls could make sense, at least we'd avoid excessive DNS requests towards them and getting blocked there.

however the only SA way I can think of is adding
209.85.128.0/17 and 74.125.0.0/16 to trusted_networks which would result into ALL_TRUSTED hitting.


--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
Windows 2000: 640 MB ought to be enough for anybody

Reply via email to