????? ????????????? cgpsa-discuss@mail.tffenterprises.com ?????? #4199
???: Daniel M. Zimmerman <dmz@tffenterprises.com>
????: Re: CGPSA rule for redirect messages
??????????: Thu, 18 Nov 2010 11:03:02 -0800
????: CGPSA Discussion List <cgpsa-discuss@mail.tffenterprises.com>
--On 18 November 2010 14:09:34 +0100 "Jona Tallieu (T & T nv)" <Junk@tnt.be> wrote:

Hi all,

we're using CGPSA on OSX Server 10.5.8 and CGP 5.1.16 in Full-Featured
Mode. We now received complaints from a big provider/ISP that we send out
spam to their servers.

After examining the headers of those messages, it seems they are all
messages coming from groups on our server that are configured to redirect
mail to a mailbox at that provider.

we have added the domainname of the people who forward their mail using
the groups into the "scan_domains" list in the CGPSA config file. Now I'm
trying to catch all the messages that are spam into a central quarantine
mailbox.

I'm using this rule:

(
      ("Header Field", is, "X-Autogenerated: group"),
      ("Header Field", is, "X-Spam-Flag: YES"),
      (
        "Header Field",
        in,
        "X-Spam-Checker-Version: mailscanner"
      )
    ),
    (("Store in", "~spambox@domain.com/QUARAN"), (Discard))
  ),


But it does not work.
If I look at the headers of those messages delivered in the mailbox of
the provider, we can see that there is a X-Spam-Flag: YES header added by
CGPSA.

Any ideas what I'm missing?

Do they also have "X-Spam-Checker-Version: mailscanner" in them? Certainly that's not a version string CGPSA would put there; did you customize that for your installation?

-Dan

------------------------------------------------------------------
Daniel M. Zimmerman                                TFF Enterprises
1900 Commerce St. Box 358426        http://www.tffenterprises.com/
Tacoma, Washington  98402  USA              dmz@tffenterprises.com
???????? (FEED) ???????? (DIGEST) ???????? (INDEX) ??????? ????????? ?????? ???? Listmaster