On 16-04-19 07:01 AM, Michelle Sullivan wrote:
Any other problems like HELO/EHLO not being FQDN, not matching the host,
not existing etc... I'll usually 4xx or ignore (e.g. ignore for not
matching, 421 for not existing... etc.)

Regards,

Hey, stop telling them all our tricks :)

Yes, we also reject outright any HELO that is just a dotted quad in most of our technologies.. And usually mark as Spam anything that doesn't present a FQDN in the HELO, or generic localhost.localdomain.

We found that you cannot make a policy that the HELO matches PTR, still too many HELO's represent internal naming conventions for the server, and do not match the outgoing IP, but it is used as an indicator for many of our filtering patterns in conjunction with other indicators.

HELO is easy to forge, the PTR is not, so it is helpful but not absolute. All we ask is that the email administrator at least took the time to set up a FQDN for the server host name (which is usually what is used for the HELO in most email server implementations by default)


--
"Catch the Magic of Linux..."
------------------------------------------------------------------------
Michael Peddemors, President/CEO LinuxMagic Inc.
Visit us at http://www.linuxmagic.com @linuxmagic
------------------------------------------------------------------------
A Wizard IT Company - For More Info http://www.wizard.ca
"LinuxMagic" a Registered TradeMark of Wizard Tower TechnoServices Ltd.
------------------------------------------------------------------------
604-682-0300 Beautiful British Columbia, Canada

This email and any electronic data contained are confidential and intended
solely for the use of the individual or entity to which they are addressed.
Please note that any views or opinions presented in this email are solely
those of the author and are not intended to represent those of the company.

_______________________________________________
mailop mailing list
mailop@mailop.org
https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Reply via email to