One of these days, I'm gonna learn to reply-all to messages from this
list....

> Please disregard me if this sounds dumb because I'm
> still new to all of these. Here is my thought.
>
> COuld it be possible for a spammer to send an email
> with additional headers that are exactly like SA's
> with "X-Spam-FLag: NO" to trick the MDA filtering
> matches? Since SA's headers are at the end filtering
> would stop once it matches the fake headers.

I think that SA re-writes the headers, so it should remove any existing
SA headers prior to processing and tagging the message. (I don't know
this for sure, I just think that is the case.)

You should not use X-Spam-Flag or other common SA headers to
conditionally bypass spam scanning unless you are using it in
combination with some other information that assures the source of that
header is your server.

Bret
----------

Send your spam to: [EMAIL PROTECTED]
Thanks for keeping the internet spam-free!




Reply via email to