Hello!
I just found this interesting entry in out logs:
Sep 16 16:32:40 mail qmail: 1000650760.042276 delivery 747: failure:
213.165.64.100_does_not_like_recipient./Remote_host_said:_550_{mx14}_The_recipient_does_not_accept_mails_from_'hotmail.com'_over_foreign_mailservers/Giving_up_on_213.165.64.100./
Someone from hotmail.com sent a mail to a local user which had
configured the account (via vmailmgr) to send a copy to her private
address at gmx.de. gmx is using a modified version of qmail.
This feature could be interesting, since most spam mails use a hotmail
sender address, but usually only the mails that come directly from one
of the hotmail servers are real mails.
I'd like to block hotmail completely but then our customers would start
complaining...
--
The idea: A new control file where you can speficy domains with a list
of allowed SMTP sender ip adresses or something like a DNS lookup where
the domain name is checked to match the MAIL FROM.
What do you think?
Ciao, Chtephan!