On 06/06/2018 09:03, Stefano Bagnara wrote:
> On Wed, 6 Jun 2018 at 09:52, Gianluca <[email protected]> wrote:
>> Hi all,
>> we experience some problems with sectoor.de blacklist, our ips are 
>> blacklisted into this list but the main web page of the blacklist 
>> http://www.sectoor.de/tor.php is simply a blank page without informations.
>> Anyone wih the same problem? Can we consider it a False Positive?
> 
> It is listing everything... sounds like the domain expired.
> So it is an issue for the receiver: they probably want to remove that
> DNSBL from their configuration or they won't receive anything anymore,
> from anyone.
> 
> Stefano
> 
> --
> Stefano Bagnara
> Apache James/jDKIM/jSPF
> VOXmail/Mosaico.io/VoidLabs

In fact, any software that uses RBLs for blocking should monitor those
lists for sanity.

For IP block lists it is quite straightforward: just check if 127.0.0.1
is listed and disable a list if it is (according to
https://tools.ietf.org/html/rfc5782#section-5).

For URL black lists it is not that clear: in Rspamd, for example, I
monitor if 'facebook.com' is blacklisted by this list, however, I'm not
100% sure that it is the correct approach.


_______________________________________________
mailop mailing list
[email protected]
https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Reply via email to