Matthias Leisi wrote: > On Mon, Sep 10, 2012 at 8:34 PM, Helmut Schneider <jumpe...@gmx.de> > wrote: > > >> It looks like RCVD_IN_DNSWL_MED examines "firstuntrusted" and if he > >> trusts his MX/relays correctly then this shouldn't be happening. > > In general, setting up the trustpath correctly is sufficient. > > > If I understood you correctly I'd need to add all relays of > > MessageLabs to trusted_networks and also track any IP address > > changes... > > In theory, you need to do this for all DNSxL lookups.
In practise they all resolve fine to *.messagelabs.com. > As for dnswl.org, one of the data download files is in "SpamAssassin > format", ie .cf files with trusted_networks entries separated into > four files, one for each trust level, so users can choose which [not] > to include. I appreciate the work of dnswl.org very much and only want to exclude a (few) record(s) and not the whole (or a larger part of the) list. I'll check the trusted_networks-way.