From owner-freebsd-questions Thu Nov 21 11: 1:49 2002 Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 140F037B401 for ; Thu, 21 Nov 2002 11:01:48 -0800 (PST) Received: from energyhq.homeip.net (213-97-200-73.uc.nombres.ttd.es [213.97.200.73]) by mx1.FreeBSD.org (Postfix) with ESMTP id B86AB43E88 for ; Thu, 21 Nov 2002 11:01:46 -0800 (PST) (envelope-from flynn@energyhq.homeip.net) Received: from christine.energyhq.tk (christine.energyhq.tk [192.168.0.1]) by energyhq.homeip.net (Postfix) with SMTP id 614ABAF588; Thu, 21 Nov 2002 20:01:36 +0100 (CET) Date: Thu, 21 Nov 2002 20:05:56 +0100 From: Miguel Mendez To: Kirk Strauser Cc: freebsd-questions@freebsd.org Subject: Re: Reacting to spam targetted to freebsd.org [was: Re: PLS GET BACK TO ME.] Message-Id: <20021121200556.26ea4840.flynn@energyhq.homeip.net> In-Reply-To: <877kf7kmib.fsf@pooh.lan.honeypot.net> References: <20021121031809.GA77831@tao.thought.org> <20021121135803.GB11980@gothmog.gr> <20021121140056.GA30746@kierun.org> <877kf7kmib.fsf@pooh.lan.honeypot.net> X-Mailer: Sylpheed version 0.8.6 (GTK+ 1.2.10; i386-portbld-freebsd5.0) X-Face: 1j}k*2E>Y\+C~E|/wehi[:dCM,{N7/uE3o# P,{t7gA/qnovFDDuyQV.1hdT7&#d)q"xY33}{_GS>kk'S{O]nE$A`T|\4&p\&mQyexOLb8}FO List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On 21 Nov 2002 08:47:40 -0600 Kirk Strauser wrote: Hi, > Erm, I'm roughly 99.999% against that idea. What if someone's writing > to What about the other 0.001 percent? :) > ask how to secure their FreeBSD box that's currently being used as a > spam relay (and is on many blackhole lists)? It's not that a bad idea, honestly, just don't use the default 5 theshold, but a higher one. > For what it's worth, I run SpamAssassin locally, and use it to *mark* > possible spams, but never drop them. Then I configured my client to > filter based on the `X-Spam-Status' header into a spam folder that I > periodically check. Once a month or so, I find a piece of mail that > *should* have passed but was marked, so I have to adjust my rules > and/or whitelist accordingly.-- I also have postfix hand mail to spamassassin before it's delivered to cyrus. However, I found it even better to permban several (useless for me) TLDs at the firewall level (*.es *.kr *.cn *.tw and several southamerican countries) I'm aware you can't do that on a server like FreeBSD's, but found it extremely useful on my own one. I, personally, have never recieved a legit mail from any of those countries. The spam problem is a touchy one, but I'm sure some meassures are taken at the server level for the mailing lists. I once heard a SPAM attempt hits the FreeBSD mail servers once a second. Cheers, -- Miguel Mendez - flynn@energyhq.homeip.net GPG Public Key :: http://energyhq.homeip.net/files/pubkey.txt EnergyHQ :: http://www.energyhq.tk Of course it runs NetBSD! To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message