On Tuesday, February 12, 2008 10:00 PM Steven Stern wrote:

> 
> Clam is reporting that one of my MX servers is a 'virus' source.  How
> do I tell it that the mailhop.org server is innocent and that the
> source of the mail is farther up the line?
> 
> The infected machine is likely to be here:
> from localhost ([127.0.0.1] helo=mhfr-05-bos.mailhop.org)
> ~    by mhfr-05-bos.mailhop.org with esmtp (Exim 4.68)
> ~    (envelope-from <[EMAIL PROTECTED]>)
> ~    id 1JP4o8-000DxP-Uk
> ~    for [EMAIL PROTECTED]; Tue, 12 Feb 2008 18:45:01
> -0500 
> 

You can set CLAMAV_FLAGS with --dont-blacklist=IP[,IP...]


Jason A. Bertoch
Network Administrator
[EMAIL PROTECTED]
Electronet Broadband Communications
3411 Capital Medical Blvd.
Tallahassee, FL 32308
(V) 850.222.0229 (F) 850.222.8771

_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://lurker.clamav.net/list/clamav-users.html

Reply via email to