Am 30.08.2016 um 18:54 schrieb Kris Deugau:
Nicola Piazzi wrote:
How to do it syncronously ?
It is not important to process a single mail in 5 or 50 seconds
4 me ss most important to reduce load
DNS lookups have essentially zero cost next to almost anything else SA
does
when it comes to daily limit of RBL/URIBL services and for whatever
reason you have abnormal peaks of inbound tries "zero cost" turns when
you would be able to shortcircuit a majority of the messages
i even go so far and say it would be a possible attack when someone
floods you with special composed mails containing a large list of random
domains to exceed your URIBL limits and later send the payload where
URIBL woul dhave been the anchor to detect it while your shields are
just down - in that case you may be able to find some anchor for a
meta-rule and block/shortciruit that stuff but currently it won't avoid
the dns lookups