Yahoo Groups archive

Milter-greylist

Index last updated: 2026-04-28 23:32 UTC

Thread

example greylist.conf

example greylist.conf

2005-01-24 by Farhan S.

would anybody be kind enough to share his/her greylist.conf? better if
it is from a production server. i have searched around the net, but
couldn't find any. i think new unix users like myself will appreciate
it a lot! thanks.

farhan

Re: [milter-greylist] example greylist.conf

2005-01-24 by Steven Stern

On Mon, 24 Jan 2005 12:31:15 -0000, "Farhan S." <god_father52@...>
wrote:

>would anybody be kind enough to share his/her greylist.conf? better if
>it is from a production server. i have searched around the net, but
>couldn't find any. i think new unix users like myself will appreciate
>it a lot! thanks.

I made almost no changes to the .conf file that came with the software. I
added a couple of servers to the whitelist and that's about it. Are you having
any specific problems?
-- 
  Steve

Re: [milter-greylist] example greylist.conf

2005-01-24 by Steven W. Orr

On Monday, Jan 24th 2005 at 12:31 -0000, quoth Farhan S.:

=>
=>
=>would anybody be kind enough to share his/her greylist.conf? better if
=>it is from a production server. i have searched around the net, but
=>couldn't find any. i think new unix users like myself will appreciate
=>it a lot! thanks.
=>
=>farhan

I'd like that too. TIA

-- 
Time flies like the wind. Fruit flies like a banana. Stranger things have  .0.
happened but none stranger than this. Does your driver's license say Organ ..0
Donor?Black holes are where God divided by zero. Listen to me! We are all- 000
individuals! What if this weren't a hypothetical question?
steveo at syslang.net

Re: example greylist.conf

2005-01-24 by Farhan S.

--- In milter-greylist@yahoogroups.com, Steven Stern
<subscribed-lists@s...> wrote:
> I made almost no changes to the .conf file that came with the
software. I
> added a couple of servers to the whitelist and that's about it. Are
you having
> any specific problems?
> -- 
>   Steve

hei steve, thanks for your reply..
well, i enable milter-greylist on my sendmail but it doesn't seem to
block anything. i even could send an email using telnet by connecting
to sendmail on port 25.

here is what i have on my greylist.conf:
----------------------------------------------
# milter-greylist config file

peer x.x.x.126 # IPs assigned to my server
peer x.x.x.127 # IPs assigned to my server
peer x.x.x.128 # IPs assigned to my server
peer x.x.x.129 # IPs assigned to my server
peer x.x.x.130 # IPs assigned to my server
peer x.x.x.131 # IPs assigned to my server

syncaddr *

addr 127.0.0.0/8 	# PRIVATE IP RANGES
addr 192.168.0.0/8 	# PRIVATE IP RANGES
addr 10.0.0.0/8 	# PRIVATE IP RANGES
addr 172.16.0.0/12 	# PRIVATE IP RANGES

addr ::1 # what does this mean? something related ipv6??

addr x.x.x.126 # IPs assigned to my server
addr x.x.x.127 # IPs assigned to my server
addr x.x.x.128 # IPs assigned to my server
addr x.x.x.129 # IPs assigned to my server
addr x.x.x.130 # IPs assigned to my server
addr x.x.x.131 # IPs assigned to my server

domain /.*@domain1\.com/ 	#domain hosted in my server
domain /.*@domain2\.com/	#domain hosted in my server
domain /.*@domain3\.info/	#domain hosted in my server
domain /.*@domain4\.com/	#domain hosted in my server
domain /.*@domain5\.com/	#domain hosted in my server
domain /.*@domain6\.com/	#domain hosted in my server
domain /.*@hotmail\.com/	#hotmail.com - good idea?
domain /.*@yahoo\.com/		#yahoo.com - good idea?
domain /.*@gmail\.com/		#gmail.com - good idea?

report all

dumpfile "/var/milter-greylist/greylist.db"

dumpfreq 12h

# Copied from http://greylisting.org/whitelisting.shtml
addr 12.5.136.141/32	# Southwest Airlines (unique sender, no retry)
addr 12.5.136.142/32	# Southwest Airlines
addr 64.12.136.0/24		# AOL (common pool)
addr 64.12.137.0/24		# AOL
addr 64.12.138.0/24		# AOL
addr 64.125.132.254/32	# collab.net (unique sender per attempt)
addr 66.135.209.0/24	# Ebay (for time critical alerts)
addr 66.135.197.0/24	# Ebay
addr 66.218.66.0/23		# Yahoo Groups servers (common pool, no retry)
addr 152.163.225.0/24	# AOL
addr 195.46.220.208/32	# mgn.net
addr 195.46.220.209/32	# mgn.net
addr 195.46.220.210/32	# mgn.net
addr 195.46.220.211/32	# mgn.net
addr 195.46.220.221/32	# mgn.net
addr 195.46.220.222/32	# mgn.net
addr 195.238.2.105/32	# skynet.be (wierd retry pattern)
addr 195.238.2.124/32	# skynet.be
addr 195.238.3.12/32	# skynet.be
addr 195.238.3.13/32	# skynet.be
addr 204.107.120.10/32	# Ameritrade (no retry)
addr 205.188.156.0/24	# AOL
addr 205.206.231.0/24	# SecurityFocus.com (unique sender per attempt)
addr 207.115.63.0/24	# Prodigy - retries continually (no delay)
addr 207.171.168.0/24	# Amazon.com
addr 207.171.180.0/24	# Amazon.com
addr 207.171.187.0/24	# Amazon.com
addr 207.171.188.0/24	# Amazon.com
addr 207.171.190.0/24	# Amazon.com
addr 213.136.52.31/32	# Mysql.com (unique sender)
addr 217.158.50.178/32	# AXKit mailing list (unique sender per attempt)
addr 12.5.136.141 		# Southwest Airlines (unique sender, no retry)
addr 12.5.136.142 		# Southwest Airlines (unique sender, no retry)
addr 12.107.209.244 	# kernel.org mailing lists (high traffic, unique
sender per mail)
addr 12.107.209.250 	# sourceware.org mailing lists (high traffic,
unique sender per mail)
addr 63.82.37.110 		# SLmail
addr 64.7.153.18 		# sentex.ca (common pool)
addr 64.124.204.39 		# moveon.org (unique sender per attempt)
addr 64.125.132.254 	# collab.net (unique sender per attempt)
addr 65.82.241.160 		# Groupwise?
addr 66.100.210.82 		# Groupwise?
addr 66.162.216.166 	# Groupwise?
addr 66.206.22.82 		# PLEXOR
addr 66.206.22.83 		# PLEXOR
addr 66.206.22.84 		# PLEXOR
addr 66.206.22.85 		# PLEXOR
addr 66.27.51.218 		# ljbtc.com (Groupwise)
addr 66.89.73.101 		# Groupwise?
addr 68.15.115.88 		# Groupwise?
addr 194.245.101.88 	# Joker.com (email forwarding server)
addr 195.235.39.19 		# Tid InfoMail Exchanger v2.20
addr 195.238.2.105		# skynet.be (wierd retry pattern)
addr 195.238.2.124 		# skynet.be (common pool)
addr 195.238.3.12 		# skynet.be (common pool)
addr 195.238.3.13 		# skynet.be (common pool)
addr 204.60.8.162 		# Groupwise?
addr 204.107.120.10 	# Ameritrade (no retry)
addr 205.188.139.136 	# AOL (common pool)
addr 205.188.139.137 	# AOL (common pool)
addr 205.188.144.207 	# AOL (common pool)
addr 205.188.144.208 	# AOL (common pool)
addr 205.188.156.66 	# AOL (common pool)
addr 205.188.159.7 		# AOL (common pool)
addr 205.211.164.50 	# sentex.ca (common pool)
addr 213.136.52.31 		# Mysql.com (unique sender)
addr 216.136.226.0 		# Yahoo Mail?
addr 216.157.204.5 		# Groupwise?
addr 217.158.50.178

Re: example greylist.conf

2005-01-24 by Farhan S.

--- In milter-greylist@yahoogroups.com, "William F. Dudley Jr."
<bill@d...> wrote:
> I'm just using a modified version of the one that came with
greylist-milter.
> 
> Bill Dudley
>

hei bill,
i couldn't see your configuration file. the file is not stored in the
mailing list. i am using yahoo groups interface.

farhan

Re: [milter-greylist] Re: example greylist.conf

2005-01-24 by manu@netbsd.org

Farhan S. <god_father52@...> wrote:

> hei steve, thanks for your reply..
> well, i enable milter-greylist on my sendmail but it doesn't seem to
> block anything. i even could send an email using telnet by connecting
> to sendmail on port 25.

If you do that from a whitelisted IP, there is nothing surprising.

If milter-greylist is running, it will add a X-Greylist header to each
mail that passes through. The header will tell you what happened.

If the header is not there, then milter-greylist is not called. Check
your sendmail.cf.

-- 
Emmanuel Dreyfus
http://hcpnet.free.fr/pubz
manu@...

Re: [milter-greylist] Re: example greylist.conf

2005-01-24 by Scot L. Harris

On Mon, 2005-01-24 at 15:40, manu@... wrote:
> Farhan S. <god_father52@...> wrote:
> 
> > hei steve, thanks for your reply..
> > well, i enable milter-greylist on my sendmail but it doesn't seem to
> > block anything. i even could send an email using telnet by connecting
> > to sendmail on port 25.
> 
> If you do that from a whitelisted IP, there is nothing surprising.

When I originally tested milter-greylist I blacklisted a bogus senders
address then used telnet to send using that as the sender.  I also black
listed the IP address of a test system that I sent email from for the
final testing.

With the blacklisted sender I can send a test message when ever I want
and examine the log files for the results.


-- 
Scot L. Harris
webid@...

Time to be aggressive.  Go after a tattooed Virgo.

Re: [milter-greylist] Re: example greylist.conf

2005-01-25 by Steven Stern

On Mon, 24 Jan 2005 16:56:16 -0500, "Scot L. Harris" <webid@...> wrote:

>
>On Mon, 2005-01-24 at 15:40, manu@... wrote:
>> Farhan S. <god_father52@...> wrote:
>> 
>> > hei steve, thanks for your reply..
>> > well, i enable milter-greylist on my sendmail but it doesn't seem to
>> > block anything. i even could send an email using telnet by connecting
>> > to sendmail on port 25.
>> 
>> If you do that from a whitelisted IP, there is nothing surprising.
>
>When I originally tested milter-greylist I blacklisted a bogus senders
>address then used telnet to send using that as the sender.  I also black
>listed the IP address of a test system that I sent email from for the
>final testing.
>
>With the blacklisted sender I can send a test message when ever I want
>and examine the log files for the results.

What's in your maillog file? Here's a snippet of mine:

   Jan 23 04:03:42 ciscy milter-greylist: j0NA3fMc027457: addr 209.132.177.30
from <fedora-list-bounces@...> rcpt <subscribed-lists@...>:
autowhitelisted for more 240:00:00

I get a milter-greylist line for each incoming message.  

Here's  a snipped where the message got greylisted:

Jan 23 04:43:02 ciscy milter-greylist: j0NAh2Pp022062: addr 70.242.142.240
from <tjxtjlcwinp@...> to <Sternsteve@...> delayed for
00:00:30
Jan 23 04:43:02 ciscy sendmail[22062]: j0NAh2Pp022062: Milter:
to=<Sternsteve@sterndata.com>, reject=451 4.7.1 Greylisting in action, please
come back in 00:00:30
Jan 23 04:43:03 ciscy sendmail[22062]: j0NAh2Pp022062:
from=<tjxtjlcwinp@...>, size=0, class=0, nrcpts=0, proto=SMTP,
daemon=MTA, relay=ppp-70-242-142-240.dsl.stlsmo.swbell.net [70.242.142.240]

If you're not seeing these messages, then sendmail is not talking to your
milter. Please post the relevant section of sendmail.mc
-- 
  Steve

Move to quarantaine

This moves the raw source file on disk only. The archive index is not changed automatically, so you still need to run a manual refresh afterward.