> ALL_TRUSTED is a bit odd. If you you look back through the debug, it > > has identified untrusted relays: > > > > [11689] dbg: metadata: X-Spam-Relays-Untrusted: [ ip=194.230.33.137 > > rdns=mx.xm-rz.net helo=mail.xm-rz.net by=myhost.mydomain.com ident= > > envfrom= intl=0 id=B94C2118004 auth= msa=0 ] [ ip=62.2.104.4 rdns=
On 05.07.09 20:51, MySQL Student wrote: > Yes, after noticing xm-rz and t-p.com in 'Received:' headers on several of > these, I've since added a header rule to add points for those relays. Is > this the proper way to do it? > > header LOCAL_RECVD_TP Received =~ /.\.t-p\.com/ > score LOCAL_RECVD_TP 3.6 > describe LOCAL_RECVD_TP Recvd from botnet technically correct, but did you report that spam to t-p.com and xm-rz.net before de facto blacklisting the company? -- Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/ Warning: I wish NOT to receive e-mail advertising to this address. Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu. "One World. One Web. One Program." - Microsoft promotional advertisement "Ein Volk, ein Reich, ein Fuhrer!" - Adolf Hitler