RE: [exim] SBL and iptables

Page principale
Supprimer ce message
Répondre à ce message
Auteur: David Murphy
Date:  
À: 'Nigel Metheringham', exim-users
CC: 
Sujet: RE: [exim] SBL and iptables
The reason for this is the server is getting hammerd by the same 30 or 40
blocked servers trying to relay it mail. When they start the attack it
caused exim to sometimes die sometime just create a load of 50+. Blocking
and the tcp stack level would correct the issue.

-----Original Message-----
From: Nigel Metheringham [mailto:Nigel.Metheringham@dev.intechnology.co.uk]
Sent: Thursday, September 30, 2004 10:51 AM
To: exim-users@???
Subject: RE: [exim] SBL and iptables

On Thu, 2004-09-30 at 10:25 -0500, David Murphy wrote:
> While that does make sense I can seem to get exim to let me put a pipe
> command in that section. I not understanding what im doing wrong.


There is no ACL verb which allows an external command to be run.
> I wanted it to run right at
>
> drop dnslists =  relays.ordb.org :  bl.spamcop.net
>        message = your mail server $sender_host_address is in a black list

\
>               at $dnslist_domain ($dnslist_text)

>
> But its like pipe isn't allowed in that section.


You might be able to fake it using a ${run} string expansion from within
something else there... however I must say the idea of adjusting kernel
firewalling tables based on this strikes me as insane - and gaining
nothing other than obscuring whats happening (you can block just as
easily from exim).

    Nigel.


-- 
[ Nigel Metheringham           Nigel.Metheringham@??? ]
[ - Comments in this message are my own and not ITO opinion/policy - ]




--
## List details at http://www.exim.org/mailman/listinfo/exim-users Exim
details at http://www.exim.org/ ##