|
|||||||||||
|
RE: Email forwarding and RBL trouble
From: Bowie Bailey <Bowie_Bailey(at)BUC.com>
Date: Wed Aug 22 2007 - 09:47:26 EDT
You are making assumptions about what trusted_networks implies. Just because mail comes from a machine in your trusted_networks doesn't mean that it will not be scanned. The ONLY thing that trusted_networks means is that you trust those machines to put valid header information in the message. It does NOT mean that you trust them not to forward spam. For your configuration, you need to put your backup MX into trusted_networks in order for the RBLs to work properly. The real problem with this setup is that once your backup MX starts forwarding messages to the primary and spam is rejected, then your backup is in the bad position of having to issue a delivery notification to the sender. This is bad because most spam and viruses fake the sender information. So most of your bounces will be going to the wrong person. This is called "backscatter" and is another form of spam. A mailserver should not accept mail that it will not be able to deliver. I would suggest that you either configure your backup the same as your primary, or just drop the backup altogether. Without the backup, the sending MTAs will still retry the message (usually for at least a couple of days), so you don't lose anything unless your MX is down for an extended period of time. -- BowieReceived on Wed Aug 22 09:48:04 2007 This archive was generated by hypermail 2.1.8 : Thu Oct 25 2007 - 00:21:24 EDT |
||||||||||
|
|||||||||||