[exim] heads-up: some spam bots started RCPT flooding

Top Page
Delete this message
Reply to this message
Author: Markus Reschke
Date:  
To: exim-users
Subject: [exim] heads-up: some spam bots started RCPT flooding
Hi!

Maybe you've already noticed some spam bots trying to deliver spam to
exactly 100 recipients in one wash up. They take a list of common user
names, add your domain name, and then loop through 100 RCPT TOs per mail.
To slow them down you could use the settings smtp_ratelimit_hosts and
smtp_ratelimit_rcpt. Be careful not to bother your customers/users with
too large delays. Lowering recipients_max is not really feasible as RFC
5321 clearly states a minimum of 100.

ciao
  Markus
-- 
/ Markus Reschke              \
\ madires@??? /



--
## subscription configuration (requires account):
## https://lists.exim.org/mailman3/postorius/lists/exim-users.lists.exim.org/
## unsubscribe (doesn't require an account):
## exim-users-unsubscribe@???
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/