[KLUG Members] ORDB in the maillog

Adam Williams members@kalamazoolinux.org
18 Sep 2002 08:19:21 -0400


>>I;m running through my mail server configuration, and I added the rule:
>>FEATURE(`dnsbl', `relays.ordb.org', `"Email blocked using ORDB.org - see
>><http://ORDB.org/lookup/?host="$&{client_addr}">"')dnl
>>to my sendmail.mc.  This refuses connections from hosts that are known
>>open relays.
>>But how can one tell if a message is rejected?  I've been hovering over
>>/var/log/maillog and don't see anything that looks like it refers to
>>this.  Anyone know what and ordb bounce looks like in the maillog?
>I don't know about ORDB, but Spamcop DNSBL puts entries in maillog.
>It appears like the log entries are coming from spamcop, so I don't know
>what happens if ORDB doesn't send back messages.
>Sep 17 11:09:14 mail sendmail[15227]: g8HF9Ai15227: ruleset=check_relay,
>arg1=c252.h061013161.is.net.tw, arg2=61.13.161.252,
>relay=c252.h061013161.is.net.tw [61.13.161.252], reject=553 5.3.0 Spam
>blocked see:http://spamcop.net/bl.shtml? 61.13.161.252

Doh!  There it is....

/var/log/maillog.1:Sep 18 04:00:37 sardine sendmail[4871]: g8I80aj04871:
ruleset=check_relay, arg1=[209.98.211.205], arg2=209.98.211.205,
relay=[209.98.211.205], reject=553 5.3.0 Email blocked using ORDB.org -
see <http://ORDB.org/lookup/?host=209.98.211.205>

don't know how I missed that.

-- 
----------------------------------------------------------------
This message undoubtedly processed by the purely benevolent "US
Department of Homeland Security",  but don't worry... they're
only goal is to protect life, liberty and the pursuit of property.