My mail server flagged spam!
Chuck Swiger
cswiger at mac.com
Sun Oct 24 23:04:56 UTC 2010
On Oct 24, 2010, at 3:28 PM, Marwan Sultan wrote:
[ ... ]
> Now to avoid the 2.8 DOS_OE_TO_MX Delivered direct to MX with OE headers error..
> shall i add my domains MX records to local.cf as
> trusted_networks mail.domain.com
> or as
> internal_networks mail.domain.com ?
Please see:
http://spamassassin.apache.org/full/3.3.x/doc/Mail_SpamAssassin_Conf.html#network_test_options
http://wiki.apache.org/spamassassin/TrustPath
"Why should trusted_networks and internal_networks ever be different?
A mail relay that you want to trust in trusted_networks may itself trust its own internal dynamic IP networks. You may trust them not to be a spam source but putting them into your internal_networks list would create a false positive because then those dynamic IPs would be searched for in the DUL lists. This is an example where the two lists need to be different."
If need be, also consider whitelist_from_rcvd (or maybe whitelist_auth if you implement SPF or DKIM). I'm also told that something like:
meta AUTHD_RELAY !__LAST_UNTRUSTED_RELAY_NO_AUTH
describe AUTHD_RELAY Message submission was via an authenticated user
score AUTHD_RELAY -10
I believe there is even an optional patch in the spamass-milter port:
http://www.freebsd.org/cgi/cvsweb.cgi/ports/mail/spamass-milter/files/extra-patch-addauth?rev=1.2
...but it is probably better to just tweak the scoring a bit. Or switch to using amavisd-new, which could allow greater flexibility also....
Regards,
--
-Chuck
More information about the freebsd-questions
mailing list