On 06/06/2018 09:03, Stefano Bagnara wrote: > On Wed, 6 Jun 2018 at 09:52, Gianluca <[email protected]> wrote: >> Hi all, >> we experience some problems with sectoor.de blacklist, our ips are >> blacklisted into this list but the main web page of the blacklist >> http://www.sectoor.de/tor.php is simply a blank page without informations. >> Anyone wih the same problem? Can we consider it a False Positive? > > It is listing everything... sounds like the domain expired. > So it is an issue for the receiver: they probably want to remove that > DNSBL from their configuration or they won't receive anything anymore, > from anyone. > > Stefano > > -- > Stefano Bagnara > Apache James/jDKIM/jSPF > VOXmail/Mosaico.io/VoidLabs
In fact, any software that uses RBLs for blocking should monitor those lists for sanity. For IP block lists it is quite straightforward: just check if 127.0.0.1 is listed and disable a list if it is (according to https://tools.ietf.org/html/rfc5782#section-5). For URL black lists it is not that clear: in Rspamd, for example, I monitor if 'facebook.com' is blacklisted by this list, however, I'm not 100% sure that it is the correct approach. _______________________________________________ mailop mailing list [email protected] https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop
