On Fri, 14 Nov 2014 13:35:34 +0100 Reindl Harald <h.rei...@thelounge.net> wrote:
> *but* it makes a ton of troubles for large *legit* sending clusters > which often after a 4xx reject handover that mail to a different node > and so get again a 4xx With very little loss of effectiveness, you can modify the algorithm so that if an IPv4 address passes greylisting, you avoid greylisting anything in the /24 containing that IP address. That can help legitimate clusters quite a bit while only slightly increasing the risk from botnets. > RBL reject or hand it over to the smtpd daemon - after some months > you will see the amount of botnet connections going down at all > because it harms them waste 10 seconds for each delivery attempt I don't agree with that contention. Botnet operators have so many resources at their disposal that I doubt they care about or even notice any sort of delaying or tarpitting. Regards, David.
signature.asc
Description: PGP signature