On Wed, 4 Feb 2004, Chris Santerre wrote:

> Currently with Sendmail, I block 4-5 times as much spam that gets filtered
> with SA. Nice to know it spares my server, but the bandwidth is still taken
> up for all of us using the interweb ;)

No, if you decide to drop the connection in the check_relay ruleset,
you've only received about 5 TCP/IP packets from the other end
(maybe 1Kbyte data max). Even if you're using delayed evaluation,
the drop will occur within 10 packets. Only way to cut bandwidth
further is to put in a router packet filter.

Back in the days when I got my internet connection via a 19.2Kbaud
SLIP connection, I could -see- each IP packet. ;)

Dave

-- 
Dave Funk                                  University of Iowa
<dbfunk (at) engineering.uiowa.edu>        College of Engineering
319/335-5751   FAX: 319/384-0549           1256 Seamans Center
Sys_admin/Postmaster/cell_admin            Iowa City, IA 52242-1527
#include <std_disclaimer.h>
Better is not better, 'standard' is better. B{

Reply via email to