OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Losing My SPAM Battle

From: Gaby vanhegan (gabyvanhegan.net)
Date: Tue Apr 01 2008 - 08:16:01 CDT


On 1 Apr 2008, at 08:54, Carlos Williams wrote:

> I am running Postfix 2.3 as a corporate email server. I love
> running Postfix and don't want to switch to something else however
> SPAM is getting way out of control on my companies domain. Everyone
> is complaining about SPAM and I have to find a solution to this.
>
> ...
>
> Does anyone have a complete guide or anything they recommend?

Whilst this is a little more OpenBSD specific it worked fine for me:

http://flakshack.com/anti-spam/wiki/index.php

For the parts where you have to install the packages you can just
use yum on CentOS but the configuration may be the same.

Before all that have you turned on the RBL checks in Postfix, as well
as all the other suggested anti-spam measures? Here's a good
starting point:

/etc/postfix/main.cf:
...
smtpd_recipient_restrictions =
     permit_sasl_authenticated,
     permit_mynetworks,
     reject_non_fqdn_sender,
     reject_unlisted_sender,
     reject_unauth_destination,
     reject_non_fqdn_recipient,
     reject_unknown_recipient_domain,
     reject_unauth_pipelining,
     reject_unknown_sender_domain,
     reject_rbl_client zen.spamhaus.org,
     reject_rbl_client list.dsbl.org,
     reject_rbl_client dul.dnsbl.sorbs.net,

smtpd_helo_required = yes

I have found dspam/ClamAV/Amavisd-new to be quite effective. I also
use the OpenBSD dspam tarpit daemon as well. Very easy to setup,
bounces about 75% of the spam straight off.

Gaby.

--
Junkets for bunterish lickspittles since 1998!
http://www.playr.co.uk/