http://bugzilla.spamassassin.org/show_bug.cgi?id=2462





------- Additional Comments From [EMAIL PROTECTED]  2004-12-09 19:36 -------
Subject: Re:  [review] detect SMTP AUTH to avoid dynablock FPs on
 legit msg submission

> ------- Additional Comments From [EMAIL PROTECTED]
> +0.9 on 2547 with the following questions without answers:  
>   * There are some people who run SpamAssassin at SMTP-time.  Did the server 
> add his own Received header then? 

If it doesn't it should, this isn't the only case where SpamAssassin 
relies on a milter to at least spoof a received header.  See bug 2860.


>   * I've been told that ISS in some versions ships an SMTP server and some 
> HTTP relays which are enabled per default (yikes!).  Could 'HTTP' misfire for 
> such open relays?

It's not SpamAssassin's job to protect against open relays.  I believe 
the ISS HTTP relays are authenticated though, anyway.  If they're not 
they should be shut off, or made that only trusted hosts can connect to 
them.


Daryl





------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

Reply via email to