On Fri, 14 Nov 2014 13:35:34 +0100
Reindl Harald <h.rei...@thelounge.net> wrote:

> *but* it makes a ton of troubles for large *legit* sending clusters 
> which often after a 4xx reject handover that mail to a different node 
> and so get again a 4xx

With very little loss of effectiveness, you can modify the algorithm
so that if an IPv4 address passes greylisting, you avoid greylisting
anything in the /24 containing that IP address.  That can help legitimate
clusters quite a bit while only slightly increasing the risk from botnets.

> RBL reject or hand it over to the smtpd daemon - after some months
> you will see the amount of botnet connections going down at all
> because it harms them waste 10 seconds for each delivery attempt

I don't agree with that contention.  Botnet operators have so many
resources at their disposal that I doubt they care about or even
notice any sort of delaying or tarpitting.

Regards,

David.

Attachment: signature.asc
Description: PGP signature

Reply via email to