Help with SPAM blocking

From: Dan Lynch (dan.lynch_at_placer.ca.gov)
Date: 01/19/05

  • Next message: Kevin Carlson: "Re: MS SQL 2000"
    Date: Wed, 19 Jan 2005 10:38:25 -0800
    To: <security-basics@securityfocus.com>
    
    

    Greetings list,
     
    I'm new to SPAM blocking and am trying to ramp up my knowledge of its
    mechanisms. I've done several days of research all over the net and
    there are still some points of confusion I can't seem to find
    explanations for. Anything you can help clarify for me is most
    appreciated. I also welcome reference to more focused mail lists I can
    query.
     
    First, I'm still looking for a good technical explanation of how
    Realtime Blackhole Lists (RBLs) work. Many references have specific
    implementation details (the syntax of the sendmail config lines, etc),
    but not the overview of RBL technology. The overviews I have found are
    too generic and mail-recipient/end-user oriented to be of much use.

    Do RBL's have a standard file format? What's it look like?

    What I can glean from FAQs and documentation implies there are two
    types: SMTP based and DNS based. Is this correct? Or is DNSRBL
    synonymous with RBL? Some lists (like njabl.org) imply they can be used
    by a DNS server, but I'm not clear how that functions. Why do so many
    references mention loopback addresses (see www.njabl.org/use.html, or
    the declude.com database). What's the connection?
     
    Is it best practice to use one list integrated with your DNS server, or
    saved as a hosts file on your mail server, and another configured at
    your SMTP gateway?
     
    Also, is an RBL downloaded to your SMTP host, or is it used as a remote
    query? If it's remote, how can one create exceptions when needed? Is
    that where your SMTP gateway's white-list feature comes in?

    Again, thanks for any info you can provide.

    Dan Lynch, CISSP
    County of Placer
    Auburn, CA

    dlynch at placer dot ca dot gov


  • Next message: Kevin Carlson: "Re: MS SQL 2000"

    Relevant Pages

    • Re: Help with SPAM blocking
      ... I own a large web hosting company, so naturally we get allot of spam. ... I also welcome reference to more focused mail lists I can ... > but not the overview of RBL technology. ... SMTP based and DNS based. ...
      (Security-Basics)
    • Re: Help with SPAM blocking
      ... maybe you consider greylisting to fight spam and many self sending mail ... I also welcome reference to more focused mail lists I can ... > but not the overview of RBL technology. ... SMTP based and DNS based. ...
      (Security-Basics)
    • RE: Help with SPAM blocking
      ... the RBL is implemented as a DNS server. ... When your SMTP ...
      (Security-Basics)
    • Re: 550 invalid domain error
      ... I received the invalid domain error from this email address. ... The primary SMTP email ... for each server with users on it that is a member of the DL. ... contacts are part of a couple of distribution lists. ...
      (microsoft.public.exchange.admin)
    • Re: try to create manually updating RBL on 2000 DNS
      ... > I have to admit that I have no idea how to create a realtime black lists ... > what an RBL really is. ... > 2) Create a Forward Zone and name it say, ... your SMTP server uses the same DNS as holds the zone ...
      (microsoft.public.win2000.dns)

  • Quantcast