This is a good idea, but there are 2 files : 20_freemail_mailcom_domains.cf 20_freemail_domains.cf The first is commonly abused only FREEMAIL_FROM rule search in both but have a strange description “Sender email is commonly abused enduser mail provider” It tell ‘commonly abused’ but it search also in 20_freemail_mailcom_domains.cf
Another thing, the date of files is # Updated 2014-09-17-axb Nicola Piazzi CED - Sistemi COMET s.p.a. Via Michelino, 105 - 40127 Bologna – Italia Tel. +39 051.6079.293 Cell. +39 328.21.73.470 Web: www.gruppocomet.it<http://www.gruppocomet.it/> [Descrizione: gc] Da: Jason Haar [mailto:jason_h...@trimble.com] Inviato: giovedì 18 agosto 2016 09:50 A: Nicola Piazzi <nicola.pia...@gruppocomet.it> Cc: users@spamassassin.apache.org Oggetto: Re: A domain category that all need Check out 20_freemail_domains.cf<http://20_freemail_domains.cf> that is part of SpamAssassin. It contains all the known "freemail" services, so you could work on the assumption that if it's not one of these, it's "private" -- Cheers Jason Haar Information Security Manager, Trimble Navigation Ltd. Phone: +1 408 481 8171 PGP Fingerprint: 7A2E 0407 C9A6 CAF6 2B9F 8422 C063 5EBB FE1D 66D1