>we receive spam from some accounts that belong >to those domains...
maybe, maybe not. you have to look at all the delivery headers to know whether the msg is really from bigISP ip addresses. In IMGate, we have a new anti-spam filter: when the envelope @sender.domain alleges to be one of 4400 frequently forged domains, IMGate will reject the msg if the sending's ip PTR and A record don't match. Going further, I have a shell script that harvests the sender's ip from the above rejects and blacklists that ip's entire Class C. BOFH rules apply at all times! Len __________________________________________________________________ www.menandmice.com/DNS-training : DNS Training BIND8NT.MEIway.com : ISC BIND for NT4 & W2K IMGate.MEIway.com : Build free, hi-perf, anti-abuse mail gateways Please visit http://www.ipswitch.com/support/mailing-lists.html to be removed from this list. An Archive of this list is available at: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Please visit the Knowledge Base for answers to frequently asked questions: http://www.ipswitch.com/support/IMail/
