On Sun, July 12, 2009 16:21, RW wrote: > Generally forwarders should go into your internal networks,
no no, internal networks is your own wan ips nothing more, imho forwarders is trusted/msa > unless they rewrite the return-path why does this change ? > or there is a possibility of mail submission, msa networks > in which case thing get a bit more complicated. indeed :) > If you want to add other addresses to trusted remember that they must be > an unbroken chain. best is always to check a giving msg a test like spamassassin 2>&1 -D -t msg | grep untrusted | less to see the untrusted ips and then whois the ips to find the good ips that is not dynamic/untrusted -- xpoint