Search OutlookPower's 9,098 Outlook and all-things-email article archive 
Home
EasyPrint
News details Click here for the RSS feed's XML code. This is not a browser URL.
Articles-only Click here for the RSS feed's XML code. This is not a browser URL.
Twitter Feed Click here for the Twitter feed.
EMAIL UNDER ATTACK
Black death for a top blacklist
By Daniel Koffler

The editors at ZATZ would like to welcome Daniel Koffler as our latest, newly-minted Contributing Editor for DominoPower Magazine. With all the insanity this week about email systems, he's managed to keep up with it all and provide us with some of the most timely articles on the topic anywhere. We're proud to add Daniel to our editorial ranks. We're running this article in both OutlookPower and DominoPower because of the importance of the topic. -- DG

It has been a tough few weeks for mail administrators everywhere. Mail worms abound; at least three variations of the SoBig worm have appeared and spread like wildfire. The Bugbear.B, Mimail, and Fizzer mail worms have also caused large scale infections and hit the highest virus alert levels worldwide in the same time period.

To top it all off, many mail administrators realized today that their inbound SMTP servers were not accepting mail from anyone. Was this a new virus or worm? No, it was one of their spam fighting tools turned against them.

DNSBLs (DNS Blacklists) are a hot new weapon in the fight against spam. They allow mail servers to check to see if a system trying to deliver mail is a known spammer or potential source of spam (such as an open SMTP relay). OsiruSoft, publisher of the OsiruSoft and SPEWS blacklists and one of the most pre-eminent blacklist providers, shut down and took the servers configured to use those lists down with them.

Blacklisting the world
Since August 26th, every time a server asks relays.osirusoft.com if a connecting server is on the blacklist, the server responds "yes". This means that every connection to a server using these blacklists is rejected. This has left administrators scrambling to remove OsiruSoft blacklists from all their effected servers.

Debates are raging as to why OsiruSoft would bow out in this manner. OsiruSoft had been under a heavy DDoS (Distributed Denial of Service) attack for several days before they shut down, but this does not explain why they would blacklist the world and no official reason has been given by any OsiruSoft official.

Using DNS blacklists to stop spam is a concept still in its infancy and even before this incident there was much debate over its true merits. While blacklists can filter a large percentage of spam, critics argue that relying on a third party for mail delivery is tricky at best; OsiruSoft proved that point. As mail administrators it may be time to re-think how DNS blacklists are used.

Re-thinking policy
Most SMTP servers that support DNS blacklists will also provide more then one way to handle them. Logging or quarantining messages from sources appearing on blacklists is a much safer bet then rejecting messages outright, although it requires more administrative involvement. Logging will tell you how bad your spam problem is without attempting to resolve it. Quarantines require that users or administrators are regularly notified of items in quarantine and take the time to release or delete them.


1  ·  2  ·  Next »
Other articles you might like
Home > Online Safety > Spam protection (20 articles)
   Automatically building a safe-senders list can save you a lot of time
   A quick tip that'll block bajillions of unsolicited messages
   How to add an add-on spam filter to Outlook Express
Get Weekly Email Updates
Subscribe to our regular weekly email newsletter. It's packed with tips, reviews, deep analysis, and the latest news.
 
Recent OutlookPower Articles
Seek and find: Strategies to locate filed-away emails fast
More about disappearing text
Removing an Office installation that doesn't want to go away
Using Office on more than one computer
How to fall back in love with your email
Where'd my To-Do Bar go?
Running auto-respond rules when Outlook is closed
OutlookPower News Center
Microsoft Azure's place in the cloud
Multicore chips require OS rework
Opera: 'Dramatic' rise since Microsoft's ballot page
Microsoft's XP Mode Boondoggle
Hidden Windows 7 costs worry upgraders
Microsoft Announces Windows 7 SP1
Microsoft Says It Will Play Nice with Open Source
>> Read all the news
More from the ZATZ journals
Computing Unplugged: Online safety for virtual learning
David Gewirtz Online: CNN commentary and analysis
DominoPower: Syncing Notes with Android phones
-- Advertisement --

ONLINE GROUP CALENDAR - FOR UP TO 100 OF YOUR CLOSEST FRIENDS
Stay organized and in control with 24/7 access to all of your important events, projects and files --whether you're at work, at home or on the road.

You can share your calendar, projects and files so everyone in your office is up to date. Plus, search your entire group to find times when everyone is available to meet, manage company resources and much more.

Organize your entire team for as low as $9.95 per year (and yes, that's where the decimal place is supposed to be!)

Tap here to get started right away.

-- Advertisement --

Outlook sharing made EASY... (without Exchange)
Share Outlook calendars, tasks, contacts, and folders without using an Exchange server.

Bynari's Insight Connector is an Outlook plug-in that enables all groupware sharing for IMAP servers like Insight Server. It also supports various open source servers: Cyrus, Courier, Citadel, and Kolab. It's versatile enough to connect to other email clients with iCalendar and vCard support and seamlessly share with Outlook.

Click here to download a FREE 30 day trial and start sharing now.

ZATZ Home  ·  News  ·  Back Issues  ·  Credits/Trademarks ·  Link To Us
The Power Magazine for Microsoft Outlook and Exchange Users at OutlookPower.com
Copyright © 1998-2010, ZATZ Publishing. All rights reserved worldwide.
Outlook is a trademark of Microsoft Corporation.
Editor's Login