ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    What to do about misconfigured email servers from other orgs

    IT Discussion
    8
    17
    1.2k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DashrenderD
      Dashrender
      last edited by

      You clearly found a mistake that allows the SPF to have little to no use, but how often do you really find that the potential client's setup is what caused the email, and that the address isn't just spoofed?

      momurdaM 1 Reply Last reply Reply Quote 0
      • momurdaM
        momurda @Dashrender
        last edited by

        @Dashrender
        Ah yes, in this case the invalid spf has allowed their email to be spoofed. If their spf was valid, this email wouldnt have been sent unless the account that sent is real, in which case it has been compromised. I suppose it doesn't happen that often. But sometimes large orgs don't even have spf, which makes stopping spoofed emails from them difficult.

        1 Reply Last reply Reply Quote 0
        • JaredBuschJ
          JaredBusch
          last edited by

          Why are you blocking domains int he first place. This is what spam filter systems are designed to do for you.

          1 Reply Last reply Reply Quote 1
          • momurdaM
            momurda
            last edited by

            I have spam filters. These messages go through with a spam score of 0, and get delivered.

            JaredBuschJ 1 Reply Last reply Reply Quote 0
            • JaredBuschJ
              JaredBusch @momurda
              last edited by

              @momurda said in What to do about misconfigured email servers from other orgs:

              I have spam filters. These messages go through with a spam score of 0, and get delivered.

              Buy a new service then because the one you have is obviously not working.

              Spending any time at all manually adding domains to a blacklist is just crazy.

              IRJI 1 Reply Last reply Reply Quote 2
              • IRJI
                IRJ @JaredBusch
                last edited by

                @JaredBusch said in What to do about misconfigured email servers from other orgs:

                @momurda said in What to do about misconfigured email servers from other orgs:

                I have spam filters. These messages go through with a spam score of 0, and get delivered.

                Buy a new service then because the one you have is obviously not working.

                Spending any time at all manually adding domains to a blacklist is just crazy.

                I agree

                1 Reply Last reply Reply Quote 0
                • DashrenderD
                  Dashrender
                  last edited by

                  Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                  JaredBuschJ travisdh1T 2 Replies Last reply Reply Quote 1
                  • JaredBuschJ
                    JaredBusch @Dashrender
                    last edited by

                    @Dashrender said in What to do about misconfigured email servers from other orgs:

                    Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                    Users subscribing to things is not spam. That is stupid user tricks.

                    DashrenderD 1 Reply Last reply Reply Quote 1
                    • travisdh1T
                      travisdh1 @Dashrender
                      last edited by

                      @Dashrender said in What to do about misconfigured email servers from other orgs:

                      Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                      They've been finding volunteers to send their spam emails. Each person will only send a very few out, which is one way they're breaking through the spam filters. Even my gmail account gets them, and that's the best filtering I've been able to find for the price.

                      scottalanmillerS 1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller @travisdh1
                        last edited by

                        @travisdh1 said in What to do about misconfigured email servers from other orgs:

                        @Dashrender said in What to do about misconfigured email servers from other orgs:

                        Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                        They've been finding volunteers to send their spam emails. Each person will only send a very few out, which is one way they're breaking through the spam filters. Even my gmail account gets them, and that's the best filtering I've been able to find for the price.

                        Which actually makes it not SPAM, SPAM is a term for UBE. The B is bulk. If it stops being bulk, it stops being actual SPAM.

                        1 Reply Last reply Reply Quote 0
                        • DashrenderD
                          Dashrender @JaredBusch
                          last edited by

                          @JaredBusch said in What to do about misconfigured email servers from other orgs:

                          @Dashrender said in What to do about misconfigured email servers from other orgs:

                          Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                          Users subscribing to things is not spam. That is stupid user tricks.

                          A subscription that comes from a different email address every time? Not likely. And even if it was, that's spam behavior on the part of the sender at which point I consider them a bad actor.

                          scottalanmillerS 1 Reply Last reply Reply Quote 0
                          • scottalanmillerS
                            scottalanmiller @Dashrender
                            last edited by

                            @Dashrender said in What to do about misconfigured email servers from other orgs:

                            @JaredBusch said in What to do about misconfigured email servers from other orgs:

                            @Dashrender said in What to do about misconfigured email servers from other orgs:

                            Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                            Users subscribing to things is not spam. That is stupid user tricks.

                            A subscription that comes from a different email address every time? Not likely. And even if it was, that's spam behavior on the part of the sender at which point I consider them a bad actor.

                            I know one of the big media spam shops in NYC has just thousands of accounts and domains. Block a domain, they always have another.

                            DashrenderD 1 Reply Last reply Reply Quote 0
                            • DashrenderD
                              Dashrender @scottalanmiller
                              last edited by

                              @scottalanmiller said in What to do about misconfigured email servers from other orgs:

                              @Dashrender said in What to do about misconfigured email servers from other orgs:

                              @JaredBusch said in What to do about misconfigured email servers from other orgs:

                              @Dashrender said in What to do about misconfigured email servers from other orgs:

                              Unfortunately Spam filters aren't perfect. I had one user who was being spammed daily with political ads, nothing we did could stop them, the filters were worthless.

                              Users subscribing to things is not spam. That is stupid user tricks.

                              A subscription that comes from a different email address every time? Not likely. And even if it was, that's spam behavior on the part of the sender at which point I consider them a bad actor.

                              I know one of the big media spam shops in NYC has just thousands of accounts and domains. Block a domain, they always have another.

                              exactly - this was the problem this user had. It felt more like what Travis was mentioning - not specifically directed at her, but small enough batches that the filters don't get triggered. It was a bunch of political crap she didn't care about.

                              1 Reply Last reply Reply Quote 2
                              • momurdaM
                                momurda
                                last edited by

                                I spend about 5 minutes a week adding a few domains to a blacklist. Not a big deal. My spam service is just fine, I'm talking about a few emails a week getting through. I would like to get it to 0 though I doubt that is possible. Gmail seems to be the best at spam blockage, wonder what they are doing.

                                This email address has existed since the mid 90's(company around since 1984) honestly every single spammer in the world probably has it. [email protected]. The fact that less than 10 spam messages/week get through mean the filters work well I think.

                                The big spam shops(NYC mostly as SAM says, if you believe their addresses in the sig) do send out emails with slightly different email address domains, all the time.
                                Had one that was always getting through, baddomain.com, I blacklisted it, two weeks later it was bad-domain.com

                                1 Reply Last reply Reply Quote 2
                                • 1 / 1
                                • First post
                                  Last post