IBM AH0QXML User Guide - Page 47

When utilizing the DNS Blacklist filters, you may wish to obtain additional

Page 47 highlights

The field "Desired action when a connecting host is found in a DNS Blacklist" has 3 possible options: Log only When Domino finds that a connecting host is on the blacklist, it accepts messages from the host and records the hostname and IP address of the connecting server and the name of the site where the server was listed. Log and tag message When Domino finds that a connecting host is on the blacklist, it accepts messages from the host, logs the host name and IP address of the connecting server, and the name of the site where the server was listed, and adds the Notes item $DNSBLSites to each accepted message. Log and Reject message When Domino finds that a connecting host is on the blacklist, it rejects the connection and returns a configurable error message to the host. Note: Domino uses IP version 4 (IPv4) addresses when querying DNS blacklist sites to find out if a connecting host is listed. If the connecting host has an IP version 6 (IPv6) address, Domino skips the DNSBL check for that host. Using the Custom SMTP error message response for rejected messages, you can create your own error message. In the previous example, custom error handling is enabled and will result in a delivery failure report being returned with the text found in this field. If no custom error response is entered, the default error message will be "Connection denied based on policy reason." When utilizing the DNS Blacklist filters, you may wish to obtain additional statistics to determine which connections are being reported as found in the DNS Blacklist database. Domino does not enable these statistics by default. To begin reporting the specifics on where these connections are coming from, and in what DNSBL these hosts were found, enable the following notes.ini variable on your SMTP server: SMTPExpandDNSBLStats=1 Chapter 4. Domino 6 Server anti-spam features 35

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120

Chapter 4. Domino 6 Server anti-spam features
35
The field
Desired action when a connecting host is found in a DNS Blacklist
has
3 possible options:
±
Log only
When Domino finds that a connecting host is on the blacklist, it accepts
messages from the host and records the hostname and IP address of the
connecting server and the name of the site where the server was listed.
±
Log and tag message
When Domino finds that a connecting host is on the blacklist, it accepts
messages from the host, logs the host name and IP address of the
connecting server, and the name of the site where the server was listed, and
adds the Notes item $DNSBLSites to each accepted message.
±
Log and Reject message
When Domino finds that a connecting host is on the blacklist, it rejects the
connection and returns a configurable error message to the host.
Using the Custom SMTP error message response for rejected messages, you
can create your own error message. In the previous example, custom error
handling is enabled and will result in a delivery failure report being returned with
the text found in this field. If no custom error response is entered, the default
error message will be
Connection denied based on policy reason
.
When utilizing the DNS Blacklist filters, you may wish to obtain additional
statistics to determine which connections are being reported as found in the DNS
Blacklist database. Domino does not enable these statistics by default.
To begin reporting the specifics on where these connections are coming from,
and in what DNSBL these hosts were found, enable the following notes.ini
variable on your SMTP server:
SMTPExpandDNSBLStats=
1
Note:
Domino uses IP version 4 (IPv4) addresses when querying DNS
blacklist sites to find out if a connecting host is listed. If the connecting host
has an IP version 6 (IPv6) address, Domino skips the DNSBL check for that
host.