On Tuesday, February 12, 2008 10:00 PM Steven Stern wrote: > > Clam is reporting that one of my MX servers is a 'virus' source. How > do I tell it that the mailhop.org server is innocent and that the > source of the mail is farther up the line? > > The infected machine is likely to be here: > from localhost ([127.0.0.1] helo=mhfr-05-bos.mailhop.org) > ~ by mhfr-05-bos.mailhop.org with esmtp (Exim 4.68) > ~ (envelope-from <[EMAIL PROTECTED]>) > ~ id 1JP4o8-000DxP-Uk > ~ for [EMAIL PROTECTED]; Tue, 12 Feb 2008 18:45:01 > -0500 >
You can set CLAMAV_FLAGS with --dont-blacklist=IP[,IP...] Jason A. Bertoch Network Administrator [EMAIL PROTECTED] Electronet Broadband Communications 3411 Capital Medical Blvd. Tallahassee, FL 32308 (V) 850.222.0229 (F) 850.222.8771 _______________________________________________ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://lurker.clamav.net/list/clamav-users.html
