These have been very effective for me:


Naturally, you should check the web pages for each before using them to
make sure you understand their listing policies.

Commercial DNSBL... no experience there.  Some are quite conservative,
and some are toothless.  The free ones seem better to me.

In combination with DNSBL, I have a large /etc/mail/access file of
rejects.  Bad ISPs, rogue providers, and even much of some countries.
Bandwidth-wise, it's hard to beat--mail from known-bad origins is
rejected outright.

The Windows virus-of-the-week attacks have become so common that I've
also written a little script to add those by /24.  I'll manually
"expire" them by removing that section from the access file, whenever it
seems like it's rejecting real mail.  Actually, I haven't seen that yet.

-Warren Block * Rapid City, South Dakota USA
