external lists and spam protection

Dilyan Palauzov <Dilyan.Palauzov@aegee.org> Mon, 01 October 2007 22:10 UTC

Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id l91MA2Zt063714 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Mon, 1 Oct 2007 15:10:02 -0700 (MST) (envelope-from owner-ietf-mta-filters@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.13.5/8.13.5/Submit) id l91MA2Ve063713; Mon, 1 Oct 2007 15:10:02 -0700 (MST) (envelope-from owner-ietf-mta-filters@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-mta-filters@mail.imc.org using -f
Received: from smtp.aegee.uni-karlsruhe.de (smtp.aegee.uni-karlsruhe.de [129.13.60.220]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id l91M9wmv063684 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=NO) for <ietf-mta-filters@imc.org>; Mon, 1 Oct 2007 15:10:01 -0700 (MST) (envelope-from Dilyan.Palauzov@aegee.org)
Received: from aegeeserv.aegee.org (aegeeserv.aegee.uni-karlsruhe.de [129.13.131.80]) by smtp1.rz.uni-karlsruhe.de with esmtp (Exim 4.63 #1) id 1IcTSf-0006aw-10; Tue, 02 Oct 2007 00:09:57 +0200
Received: from AEGEEserv.aegee.uni-karlsruhe.de (localhost [127.0.0.1]) by aegeeserv.aegee.org (8.14.1/8.13.6) with ESMTP id l91M9u0k029624 for <ietf-mta-filters@imc.org>; Mon, 1 Oct 2007 22:09:57 GMT
Received: (from wwwrun@localhost) by AEGEEserv.aegee.uni-karlsruhe.de (8.14.1/8.13.6/Submit) id l91M9t2a029615 for ietf-mta-filters@imc.org; Tue, 2 Oct 2007 00:09:55 +0200
X-Authentication-Warning: AEGEEserv.aegee.uni-karlsruhe.de: wwwrun set sender to Dilyan.Palauzov@aegee.org using -f
Received: from d83-181-68-57.cust.tele2.de (d83-181-68-57.cust.tele2.de [83.181.68.57]) by mail.aegee.org (Horde MIME library) with HTTP; Tue, 02 Oct 2007 00:09:55 +0200
Message-ID: <20071002000955.6x2veqixkcswwooo@mail.aegee.org>
Date: Tue, 02 Oct 2007 00:09:55 +0200
From: Dilyan Palauzov <Dilyan.Palauzov@aegee.org>
To: IETF Sieve WG <ietf-mta-filters@imc.org>
Subject: external lists and spam protection
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"; DelSp="Yes"; format="flowed"
Content-Disposition: inline
User-Agent: Internet Messaging Program (IMP) H3 (4.1.4)
X-Virus-Scanned: ClamAV 0.91.2/4443/Sun Sep 30 22:16:01 2007 on AEGEEserv.aegee.uni-karlsruhe.de
X-Virus-Status: Clean
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by balder-227.proper.com id l91MA2mu063708
Sender: owner-ietf-mta-filters@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-mta-filters/mail-archive/>
List-ID: <ietf-mta-filters.imc.org>
List-Unsubscribe: <mailto:ietf-mta-filters-request@imc.org?body=unsubscribe>

    Hello,
     In the draft-melnikov-sieve-external-lists-01 I would like very  
much to have two more tests:

    Usage:  envelope [COMPARATOR] [ADDRESS-PART] [MATCH-TYPE] [:list]
            <envelope-part: string-list>
            <key-list: string-list>

where ADDRESS-PART can be :hostname and :hostip, near the usual :from  
and :to. The :hostname and :hostip are substituted with the hostname  
of the last host that sent the mail, and hostip is the IP of that  
host. The idea is, that the script can check if the mail comes from an  
unwanted host and reject it. The real application is, that the script  
can check in an DNS blacklist, if the IP of the sending host is  
present there and refuse the mail in this case. I think it will be  
useful, once sieve scripts are executed during the smtp connection is  
not closed - then every user could specify which DNS blacklists does  
s/he want to make use of.

   At the same time the :hostname and :hostip have no usage without  
the external lists, therefore I suggest they are included here.

   Question: what to do if an implementation has no access to the  
information, or if a message is somehow not sent over smtp?

   Question: Does somebody have an idea, if spammers use one and the  
same EHLO text to send mails, regardless of the sending host? In this  
way envelope :helo would be useful as well.

   By the way, where is the changelog of draft-ietf-sieve-notify-xmpp-05 ?

   Със здраве,
     Дилян