Re: [Exim] MyDoom filtering?

Top Page
Delete this message
Reply to this message
Author: Christoph Kliemt
Date:  
To: exim-users
Subject: Re: [Exim] MyDoom filtering?
Nico Erfurth <masta@???> writes:

[...]

> Which brings up another question, "To reject, or not to reject". How
> do others handle virus-mails? Sending them into a blackhole, rejecting
> them or saving them for later investigation?


Reject. Currently i reject every mail that contains M$-executables and
i am working on a patch that drops a connection in such a case. [1][2]

> Currently I'm rejecting mails that don't pass the virusscan or which
> contain unwanted extensions (via exiscan), I know that this will most
> probably turn into a bounce to someone, but I'm not a friend of
> blackholing mails.


So what... *sigh*

cu!

christoph

Footnotes:
[1] work in progress... ;-)

[2] not willing to pay for that bandwidth...

--
Christoph Kliemt
entici GmbH, Goldenbergstr.1
D 50354 Hürth
Phon + 49 (0) 22 33 92 82 44