On Fri, 2013-08-16 at 09:27 -0700, Gregg Stock wrote: > I'm getting some ALL_TRUSTED on spam and wasn't sure what to list in as > trusted networks. My mail server has incoming messages port forwarded by > iptables. So everything looks like it comes from an internal network. > Right now, I have our LAN on the trusted networks but not the network > that NAT's the incoming messages. > If your mail is being routed via your ISP's MTAs you probably need to add them to trusted_networks too.
My trusted_networks parameters include the subnet I use on my LAN (defined as 192.168.x/24) as well as my ISP's two MTAs. I don't see any of the problems you mention. Martin