Re: dealing with spam ~ advice needed

From: Tim Kelley (tim_at_it.kpt.cc)
Date: 08/06/04

  • Next message: Andreas Neiser: "Re: 3ware: 3dmd start and stop script"
    To: debian-user@lists.debian.org
    Date: Thu, 5 Aug 2004 18:38:17 -0500
    
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    On Wednesday 04 August 2004 23:06, Steven Jones wrote:
    > Our site is being constantly "hit" by spammers using bruteforce tactics
    > looking for valid users.
    >
    > At present our servers bounce with "no valid user" is this the best tactic?
    > or is it simply better to stop such bounce msgs? while polite, spammers are
    > taking the p*ss....
    >
    > We are running postfix and spam assassin to tag spam, it is effective in
    > tagging....I am just considering my options in configuring postfix to
    > reject selected connections like my favourite optonline.net.

    Doesn't postfix have the ability to reject hosts or domains?

    I base a host_reject line in exim with a host/domain list i get from

    http://www.stearns.org/sa-blacklist/sa-blacklist.current

    This way these folks get rejected at smtp time, and the message is not
    processed. I also subscribe to about 5 blacklists, and use spam assassin.

    Are you using blacklists? That should cut out the most aggravating stuff.

    iptables or any other packet filter is really the wrong tool here anyway.

    - --
      _ _ _ _ _ _ _ _ _ _ _ _ _
     / \ / \ / \ / \ / \ / \ / \ / \ / \ / \ / \ / \ / \
    ( t | i | m | @ | i | t | . | k | p | t | . | c | c )
     \_/ \_/ \_/ \_/ \_/ \_/ \_/ \_/ \_/ \_/ \_/ \_/ \_/
    GPG key fingerprint = 1DEE CD9B 4808 F608 FBBF DC21 2807 D7D3 09CA 85BF
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.2.5 (GNU/Linux)

    iD8DBQFBEsTv/l0HSUJ+3SERAo6WAJ9M/HyDvpFDJQXJwnqgzBB9zD/GHgCfcPDW
    4V25awzmk6qMkI7r/VM/Qpw=
    =hMp8
    -----END PGP SIGNATURE-----


  • Next message: Andreas Neiser: "Re: 3ware: 3dmd start and stop script"

    Relevant Pages

    • Re: Documentation Help
      ... I am PROFOUNDLY ignorant with anything not Postfix. ... Spam Assassin ... I believe fat fingers? ...
      (Fedora)
    • Documentation Help
      ... I am PROFOUNDLY ignorant with anything not Postfix. ... Spam Assassin ... The Dirty Dozen Spammiest Ranges: http://tqmcube.com/dirty12.php ...
      (Fedora)
    • Re: [Full-Disclosure] Re: [Mailman-Developers] mailman emailharvester
      ... clamav and spam assassin integrate into postfix so that you don't ... > have to accept the spam the server can even issue a 550 in the middle ... > of the data stage ...
      (Full-Disclosure)