<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Is there a way to add in more DNSBL &#x2F; RBL sources?]]></title><description><![CDATA[<p dir="auto">I know Cloudron already checks against Spamhaus and rejects if the sending server is listed... is there an ability to add in other sources at all? I don't think there is but wanted to double-check. If not, then I'll file a feature request.</p>
]]></description><link>https://forum.cloudron.io/topic/4677/is-there-a-way-to-add-in-more-dnsbl-rbl-sources</link><generator>RSS for Node</generator><lastBuildDate>Sat, 06 Jun 2026 11:14:00 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/4677.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 15 Mar 2021 05:13:35 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Fri, 19 Aug 2022 12:14:38 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a><br />
We use abusix with rspamd, and after the implementation on the new signature base list, the quality improvement.</p>
<p dir="auto">But abusix with spamassasin, is good but still got a lot of spam passing, because SA don't support signature base abusix list.</p>
]]></description><link>https://forum.cloudron.io/post/52352</link><guid isPermaLink="true">https://forum.cloudron.io/post/52352</guid><dc:creator><![CDATA[MooCloud_Matt]]></dc:creator><pubDate>Fri, 19 Aug 2022 12:14:38 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Fri, 19 Aug 2022 04:45:49 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/necrevistonnezr" aria-label="Profile: necrevistonnezr">@<bdi>necrevistonnezr</bdi></a> I found Abusix to be superior to Spamhaus Zen, and use that as my only DNSBL at the moment with everything else going through the SpamAssassin rules.</p>
]]></description><link>https://forum.cloudron.io/post/52318</link><guid isPermaLink="true">https://forum.cloudron.io/post/52318</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Fri, 19 Aug 2022 04:45:49 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Wed, 17 Aug 2022 08:41:07 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/necrevistonnezr" aria-label="Profile: necrevistonnezr">@<bdi>necrevistonnezr</bdi></a> The DNSBL IP check is done as the very first thing as soon as the sender connects. So, the mail is not even received and thus not stored anywhere.</p>
]]></description><link>https://forum.cloudron.io/post/52226</link><guid isPermaLink="true">https://forum.cloudron.io/post/52226</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Wed, 17 Aug 2022 08:41:07 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Wed, 17 Aug 2022 07:25:14 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a> I found <code>zen.spamhaus.org</code> way too agressive, blocking several non-spam messages from even reaching the server.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> BTW is there a way to manually release "blocked" messages or let them through?</p>
]]></description><link>https://forum.cloudron.io/post/52223</link><guid isPermaLink="true">https://forum.cloudron.io/post/52223</guid><dc:creator><![CDATA[necrevistonnezr]]></dc:creator><pubDate>Wed, 17 Aug 2022 07:25:14 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Mon, 15 Nov 2021 03:06:57 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a> said in <a href="/post/28268">Is there a way to add in more DNSBL / RBL sources?</a>:</p>
<blockquote>
<p dir="auto"><a href="http://black.junkemailfilter.com" target="_blank" rel="noopener noreferrer nofollow ugc">black.junkemailfilter.com</a>;<a href="http://bl.mailspike.net" target="_blank" rel="noopener noreferrer nofollow ugc">bl.mailspike.net</a>;<a href="http://all.spamrats.com" target="_blank" rel="noopener noreferrer nofollow ugc">all.spamrats.com</a>;<a href="http://zen.spamhaus.org" target="_blank" rel="noopener noreferrer nofollow ugc">zen.spamhaus.org</a></p>
</blockquote>
<p dir="auto">interesting, I never eared about mailspike before <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=";)" alt="😉" /><br />
mainly I use [dbl and zen]spamhaus + <a href="http://barracudacentral.org" target="_blank" rel="noopener noreferrer nofollow ugc">barracudacentral.org</a></p>
<p dir="auto">Also on wikipedia they have a great listing with nice description:<br />
<a href="https://en.wikipedia.org/wiki/Comparison_of_DNS_blacklists" target="_blank" rel="noopener noreferrer nofollow ugc">https://en.wikipedia.org/wiki/Comparison_of_DNS_blacklists</a></p>
]]></description><link>https://forum.cloudron.io/post/39281</link><guid isPermaLink="true">https://forum.cloudron.io/post/39281</guid><dc:creator><![CDATA[JOduMonT]]></dc:creator><pubDate>Mon, 15 Nov 2021 03:06:57 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Sat, 06 Nov 2021 06:35:17 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/necrevistonnezr" aria-label="Profile: necrevistonnezr">@<bdi>necrevistonnezr</bdi></a> Ah thank you! I should have included that. Edited my earlier comment to include that link too now.</p>
]]></description><link>https://forum.cloudron.io/post/38896</link><guid isPermaLink="true">https://forum.cloudron.io/post/38896</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Sat, 06 Nov 2021 06:35:17 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Fri, 05 Nov 2021 09:45:42 GMT]]></title><description><![CDATA[<p dir="auto">In case you’re wondering: <a href="https://docs.cloudron.io/email/#dnsbl" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.cloudron.io/email/#dnsbl</a></p>
<p dir="auto">Thanks to <a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a> and the Cloudron Team!</p>
]]></description><link>https://forum.cloudron.io/post/38856</link><guid isPermaLink="true">https://forum.cloudron.io/post/38856</guid><dc:creator><![CDATA[necrevistonnezr]]></dc:creator><pubDate>Fri, 05 Nov 2021 09:45:42 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Sat, 06 Nov 2021 06:35:01 GMT]]></title><description><![CDATA[<p dir="auto">Wanted to write a quick update: Anyone wanting to enable an RBL can now do so very easily in the new 7.x Cloudron version! Big thanks to the Cloudron team for implementing that feature! <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
<p dir="auto">Since many visit this thread (it's <a href="https://docs.cloudron.io/email/#dnsbl" target="_blank" rel="noopener noreferrer nofollow ugc">even linked in the documentation</a> now too!) for the list of the various RBLs and experience with them, reviewing them, etc... I wanted to add one more to the list which I've been testing out for a little bit and so far seems great, blocking spam from bad IPs which even hours later still isn't on some of the other popular blacklists when I've been checking manually to verify things.</p>
<p dir="auto"><a href="https://abusix.com" target="_blank" rel="noopener noreferrer nofollow ugc">Abusix</a> is a premium service, however they do have a free tier which offers a rather large 5,000 queries per day - and I suspect most of us are not close to that amount in a single day, many likely not even over the course of a week - effectively meaning we can get premium-level spam filtering for free. They have several different lists they manage, but the recommended one to use is their <a href="https://docs.abusix.com/ami-production-zones/zones-combined" target="_blank" rel="noopener noreferrer nofollow ugc">combined.mail.abusix.zone</a> zone which checks three separate lists of theirs out of the several. It is their "recommended" one for production servers offering a good balance of more checks and performance using one single lookup zone without being too overbearing as to include false-positives, this way it greatly limits any false-positives (of which I've seen zero so far!). <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
<p dir="auto">The only downside is a very minor cosmetic issue in Cloudron with it as the Abusix list is something like <code>&lt;UUID&gt;.combined.mail.abusix.zone</code> since it's premium so it's a unique URL to every user, and as such it's a very long URL due to the UUID which means some of the log entries in Cloudron's UI for denied messages get pretty long looking. I may file a feature request later for us to perhaps try naming our zones how owe want them to so we can avoid really long named ones in the logs, but overall it's just a cosmetic issue and nothing else.</p>
<p dir="auto">So just to summarize, the ones I'm using with great success so far are the following:</p>
<pre><code>&lt;UUID&gt;.combined.mail.abusix.zone
zen.spamhaus.org
bl.mailspike.net
</code></pre>
]]></description><link>https://forum.cloudron.io/post/38847</link><guid isPermaLink="true">https://forum.cloudron.io/post/38847</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Sat, 06 Nov 2021 06:35:01 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Sat, 27 Mar 2021 14:49:01 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a><br />
Many thanks for these detailed tests and documentation!</p>
]]></description><link>https://forum.cloudron.io/post/28723</link><guid isPermaLink="true">https://forum.cloudron.io/post/28723</guid><dc:creator><![CDATA[necrevistonnezr]]></dc:creator><pubDate>Sat, 27 Mar 2021 14:49:01 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Fri, 26 Mar 2021 18:48:30 GMT]]></title><description><![CDATA[<p dir="auto">Latest update. I've been trialling a few different DNSBLs for use here at the MTA level for denying connections. So far I am very happy to say that I've had <strong>zero false-positives</strong> in over 3 days now on a very active mail server. This makes me very comfortable that this is a very safe configuration, but at the same itme would not necessarily recommend we make these default at all (in fact I don't even know if Spamhaus should be enabled by default to be totally honest- I really think that should be up to the mail admin).</p>
<p dir="auto">The zone I've settled on and most recently been using...</p>
<p dir="auto"><code>black.junkemailfilter.com;bl.mailspike.net;all.spamrats.com;zen.spamhaus.org</code></p>
<p dir="auto">To give a bit of context to each of them...</p>
<ul>
<li>
<p dir="auto"><code>black.junkemailfilter.com</code> was one I added the other day because of a clearly-spam message getting through and I had seen it in the "just now" timeframe so quickly checked <a href="http://mxtoolbox.com" target="_blank" rel="noopener noreferrer nofollow ugc">mxtoolbox.com</a> to see which DNSBL had it listed, and four of them did. This was one of them. The other was Barracuda which requires registration that I didn't want to try yet, and the other two were UCEPROTECT-2 and UCEPROTECT-3 which I didn't want to use (see side note at bottom). It’s caught a fair bit of spam the others didn’t catch earlier. This is known as "JMF-Black" on the <a href="https://www.intra2net.com/en/support/antispam/index.php" target="_blank" rel="noopener noreferrer nofollow ugc">Intra2Net list</a> and has zero false-positives.</p>
</li>
<li>
<p dir="auto"><code>bl.mailspike.net</code> is one that seems very useful and is very accurate, has helped block a lot that Spamhaus Zen didn't catch earlier (before I had the <a href="http://zen.spamhaus.org" target="_blank" rel="noopener noreferrer nofollow ugc">zen.spamhaus.org</a> earlier in the list meaning it should be checked first so we'd know if anything else blocked it that Spamhaus Zen didn't have yet). This blocked a good amount of spam. Zero false-positives.</p>
</li>
<li>
<p dir="auto"><code>all.spamrats.com</code> is also an excellent one and I'd say blocked as many as Spamhaus Zen did, it was catching spam frequently. Earlier I was using the <code>noptr.spamrats.com</code> which worked very well too but later learned of the broader <code>all.spamrats.com</code> and started using that yesterday with continued success and zero false-positives still.</p>
</li>
<li>
<p dir="auto"><code>zen.spamhaus.org</code> needs no introduction, it's probably the most popular DNSBL ever created. Much like the others, it's highly accurate and hasn't been seen to have any false-positives.</p>
</li>
</ul>
<p dir="auto">For all of the above and more, I'd recommend checking out the <a href="https://www.intra2net.com/en/support/antispam/index.php" target="_blank" rel="noopener noreferrer nofollow ugc">Intra2Net service which monitors the accuracy of the various DNSBLs</a>. My recommendation is to stick to ones if blocking from the MTA level that has a 0% or at least no higher than a 0.05% chance of false-positives as they'd be considered safe. All the other DNSBLs that are more aggressive should really just go a step down to the SpamAssassin level for scoring metrics there (which I later did too for the URIBLs instead and they've been great so far too). I did have two false-positives in very early tests with the <code>dnsbl.sorbs.net</code> one and also with <code>bl.spamcop.net</code> one. I'd suggest avoiding those for denying connections but can be used in SpamAssassin instead.</p>
<p dir="auto">I hope the above is a good test report for people, and others will hopefully find this helpful. Certainly there is no one-size-fits-all approach here, and I'd argue that none of these should even be enabled by default, however I believe them all to be "safe" based on my own experience and was glad to see the spam cut down further than it was prior to adding in the additional DNSBLs. What works for me may not work for you of course, depends likely on a lot of different factors, so "your mileage may vary" as they say. I've been watching the logs like a hawk all week and been checking every single "denied" entry and happy to report no false-positives in my testing so far over the last few days using the four listed above.</p>
<p dir="auto">Here’s a quick screenshot:</p>
<p dir="auto"><img src="/assets/uploads/files/1616253934594-c2a66d4d-8e31-491c-b1b0-2ac804f66093-resized.jpeg" alt="C2A66D4D-8E31-491C-B1B0-2AC804F66093.jpeg" class=" img-fluid img-markdown" /></p>
<hr />
<p dir="auto">Side note regarding UCEPROTECT DNSBLs: I strongly discourage use of the UCEPROTECT-* lists except possibly UCEPROTECT-1, because the level 2 and 3 seem to just blacklist large IP ranges that affect entire providers such as <a href="https://www.digitalocean.com/community/questions/how-to-removed-my-ip-as-blacklisted-in-uceprotectl3-spam" target="_blank" rel="noopener noreferrer nofollow ugc">DigitalOcean</a>, OVH, and more and basically demand fees for "express delisting" which doesn't even guarantee anything as it can be re-listed the next day. I question the ethics of that particular DNSBL provider as they seem to "extort" money from large network providers, and <a href="https://securityboulevard.com/2021/02/uceprotect-when-rbls-go-bad/" target="_blank" rel="noopener noreferrer nofollow ugc">there is also this article I found</a> that pretty much strips them apart line by line and explains why they may not be good to trust or use. My advice is to stay away from the UCEPROTECT DNSBLs based on the above plus they'd surely have a fairly high false-positive rate (you can see from the link above that the UCEPROTECT-3 has a whopping 17% inaccuracy rate.</p>
<hr />
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> - Hopefully the above report will be useful for you and <a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> when discussing some of the mail changes that may be coming in 6.3 there. <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
<hr />
<p dir="auto"><strong>Update - March 26, 2021</strong>: Out of thousands of emails over the last week, I've only found two false-positives (thankfully non-critical emails, one was a Snapchat newsletter for example). That is a very impressive result to me and my users and I'm pleased with that as that seems to be within the reasonable threshold when weighing the pros and cons.</p>
<p dir="auto">With that said, I have <a href="https://forum.cloudron.io/topic/4770/sharing-custom-spamassassin-rules">started a second test</a> which involves removing one of the DNSBLs which made the false-positive result, and then added instead to the SpamAssassin side of things to at least help with identifying spam better to avoid the inbox. While this has led to more spam processing on my server, it seems to still be working well to achieving the ultimate goal of keeping spam messages out of my users inboxes. Here is my current DNSBL list zones in effect: <code>zen.spamhaus.org;bl.mailspike.net;noptr.spamrats.com</code> (notice I removed the <code>black.junkemailfilter.com</code> and changed from <code>all.spamrats.com</code> back to <code>noptr.spamrats.com</code>)</p>
<p dir="auto">So far the results are good. This however means unfortunately some of my clients who have mailing lists on the server that forward to their personal accounts elsewhere are receiving a bit more spam again until the new feature request is implemented to prevent external spam messages from being sent.</p>
<p dir="auto">Depending on the results of the above tests, I may either stick to the current implementation or go back to how it was last week.</p>
]]></description><link>https://forum.cloudron.io/post/28268</link><guid isPermaLink="true">https://forum.cloudron.io/post/28268</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Fri, 26 Mar 2021 18:48:30 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Wed, 17 Mar 2021 18:08:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/moocloud_matt" aria-label="Profile: moocloud_matt">@<bdi>moocloud_matt</bdi></a> I think it's safe to say from our conversations in this post and several others related to email improvements that you and I have different views overall on how to run our own mail servers. And that's totally okay! <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /> That's actually the point... that there is no one-size-fits-all approach to running a mail server. Thus, you should be able to run your mail server how you best see fit for your clients, and how you run your mail server may not be the best way for me to run mine for my clients. Options are the key here, and that's what I'm trying to make sure is understood. It should all be optional and there should be no changes to the defaults on a new install, IMO. In fact I'd go to far to say that even Spamhaus shouldn't be used by default to block at the MTA level.</p>
<p dir="auto">In my case as an example, I've had a lot of email denied now at the MTA level by adding in the extra DNSBLs, and they've <strong>worked perfectly with zero false-positives</strong> so far in nearly 48 hours of running it on a very actively used mail server. So I see that as a big win for me and my clients. And of course I can always reconsider if I start seeing too many false-positives (or heck, even one false-positives for that matter - which I've yet to see so far in my testing), and that's kind of another example of the point I'm making here too... that we need <em>options</em> so we can enable and disable at will. In other words, none of what I'm asking for or proposing should be enabled by default, and none of it should be hard-coded as it currently is - we should be exposing this to users so they can make the decisions that best suits their own needs. <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
<p dir="auto">I know you seem worried about "complexity to cloudron" which is a fair concern always on how to keep Cloudron user-friendly, however I don't quite share that one this time because the data is already in Cloudron (it already uses Spamhaus Zen for blocking at MTA level and as we've seen is easily configurable already - it just doesn't survive restarts the way we can manually do it now), so the existing functionality just needs to be exposed in the UI. It's really no different than how they had recently exposed the SpamAssassin configuration too. It just needs a new little line on the Mail page with the other settings for message sized and such, a toggle and a box to list new DNSBLs. Of course it's more complicated than that in the backend, but from a user perspective this should not add any additional complexities. And I'd assume even in the backend once it's done it's done and shouldn't really need to be maintained at all.</p>
<p dir="auto">All to say... we should have options available to us to benefit all of us uniquely as running a mail server is a complex task where it is not feasible to use a one-size-fits-all approach, IMO. <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
]]></description><link>https://forum.cloudron.io/post/28091</link><guid isPermaLink="true">https://forum.cloudron.io/post/28091</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Wed, 17 Mar 2021 18:08:35 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Wed, 17 Mar 2021 13:05:12 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a> said in <a href="/post/27935">Is there a way to add in more DNSBL / RBL sources?</a>:</p>
<blockquote>
<p dir="auto">That is an interesting approach, and I'll consider it.</p>
</blockquote>
<p dir="auto">I know that is not the best solution out there.<br />
But you can automate it, with API and Sieve is an open protocol.</p>
<p dir="auto">But is a start for now, and yes having a mail filter also for mail fwd is a good option, and if you don't need it you should just be able to disable SpamAssassin from the server.</p>
<p dir="auto">I really don't like to w8st resources</p>
]]></description><link>https://forum.cloudron.io/post/28075</link><guid isPermaLink="true">https://forum.cloudron.io/post/28075</guid><dc:creator><![CDATA[MooCloud_Matt]]></dc:creator><pubDate>Wed, 17 Mar 2021 13:05:12 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Wed, 17 Mar 2021 13:01:57 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a> said in <a href="/post/27935">Is there a way to add in more DNSBL / RBL sources?</a>:</p>
<blockquote>
<p dir="auto">spam will never be 100% blocked and there will always be false-positives too</p>
</blockquote>
<p dir="auto">Yes, I totally agree with that.</p>
<p dir="auto">By big question here is how much is useful to add feature and complexity to cloudron, when there are solutions that are specifically built for that.</p>
<p dir="auto">About mailspike and Spamhaus, they both have SpamAssassin module, and if cloudron provides the possibility to disable SA, I think is a grate idea to have them.<br />
But not as simple DNSBL, but as SA module.</p>
<p dir="auto">For spamrats idk, having to many DNSBL or SpamAssassin module will slow down the server a lot, remember for every incoming email, you need to call unbound that check his cache and if doesn't have the record call the DNSBL.<br />
This happens for every email, and every external check you have, and maybe they are slow at that moment and the request take more time than usual, ... and so on<br />
Resources usage need to be taken into count.</p>
]]></description><link>https://forum.cloudron.io/post/28074</link><guid isPermaLink="true">https://forum.cloudron.io/post/28074</guid><dc:creator><![CDATA[MooCloud_Matt]]></dc:creator><pubDate>Wed, 17 Mar 2021 13:01:57 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Wed, 17 Mar 2021 01:33:50 GMT]]></title><description><![CDATA[<p dir="auto">Woohoo, so much mail goodness, when do we get these as new defaults in Cloudron? <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=";-)" alt="😉" /></p>
]]></description><link>https://forum.cloudron.io/post/28040</link><guid isPermaLink="true">https://forum.cloudron.io/post/28040</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Wed, 17 Mar 2021 01:33:50 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Tue, 16 Mar 2021 17:45:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> Yeah Mailspike is a great one. I completely forgot about it until all of this recent testing, haha. I am about 95% sure after visiting it's website that I used that on my email server before Cloudron too and it served really well. It was so many years ago now that I basically forgot which lists I used before, I think I'm basically going through all the same tests as I did about 4 years ago, lol.</p>
<p dir="auto">For anyone who doesn't want Mailspike actually denying connections though, it <a href="https://mailspike.org/usage.html" target="_blank" rel="noopener noreferrer nofollow ugc">should also work great in SpamAssassin</a> as they already gave all the needed headers for it too so at least it'll help in identifying spam better too, using the text below:</p>
<pre><code>header RCVD_IN_MSPIKE_BL eval:check_rbl('mspike-lastexternal', 'bl.mailspike.net.')
tflags RCVD_IN_MSPIKE_BL net
score RCVD_IN_MSPIKE_BL 3.5
header RCVD_IN_MSPIKE_WL eval:check_rbl('mspike-lastexternal', 'wl.mailspike.net.')
tflags RCVD_IN_MSPIKE_WL net
score RCVD_IN_MSPIKE_WL -2.1
</code></pre>
]]></description><link>https://forum.cloudron.io/post/28009</link><guid isPermaLink="true">https://forum.cloudron.io/post/28009</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Tue, 16 Mar 2021 17:45:35 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Tue, 16 Mar 2021 17:22:00 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a> The mailspike is a great find. It seems very professionally done - <a href="https://www.mailspike.net/usage.html" target="_blank" rel="noopener noreferrer nofollow ugc">https://www.mailspike.net/usage.html</a> . Spamrats is also updated - <a href="https://spamrats.com/lists.php" target="_blank" rel="noopener noreferrer nofollow ugc">https://spamrats.com/lists.php</a></p>
]]></description><link>https://forum.cloudron.io/post/28004</link><guid isPermaLink="true">https://forum.cloudron.io/post/28004</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Tue, 16 Mar 2021 17:22:00 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Tue, 16 Mar 2021 16:36:57 GMT]]></title><description><![CDATA[<p dir="auto">Latest update:</p>
<ul>
<li>The blacklists still are working perfectly with no false-positives since I changed it to the one above. I also added one late last night (because I saw a few getting through that were clear spam again) the <code>noptr.spamrats.com</code> which according to blacklist checks the spammy servers were listed on it. So now it reads as follows: <code>zen.spamhaus.org;bl.mailspike.net;noptr.spamrats.com;bl.0spam.org</code> - So on the side of denying more spam connections while not having any false-positives, this seems like a huge win. <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /> Notice the many emails blocked from sources other than Spamhaus Zen, and I've confirmed none of them are false-positives.</li>
</ul>
<p dir="auto"><img src="/assets/uploads/files/1615912525961-618c7a5a-18b8-470c-9463-5e00375e96ef-image-resized.png" alt="618c7a5a-18b8-470c-9463-5e00375e96ef-image.png" class=" img-fluid img-markdown" /></p>
<ul>
<li>On the other side of things... <a href="https://forum.cloudron.io/post/27999">I noticed a clearly-spam message getting past still though and reported it in the other thread</a>.</li>
</ul>
]]></description><link>https://forum.cloudron.io/post/27998</link><guid isPermaLink="true">https://forum.cloudron.io/post/27998</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Tue, 16 Mar 2021 16:36:57 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Tue, 16 Mar 2021 05:18:17 GMT]]></title><description><![CDATA[<p dir="auto">I've filed a formal feature request for the ability to add further DNSBLs at <a href="https://forum.cloudron.io/topic/4694/add-dnsbls-to-deny-incoming-spam-messages">https://forum.cloudron.io/topic/4694/add-dnsbls-to-deny-incoming-spam-messages</a> -- Please upvote if you wish to see this functionality.</p>
<p dir="auto">A further update to my testing of manually adding in the DNBSLs:</p>
<ul>
<li>I have settled for now on the following zone, which so far has worked perfectly with no false-positives today with these three DNSBLs set in Haraka (but I'm very carefully monitoring this and may make further tweaks if needed): <code>zen.spamhaus.org;bl.mailspike.net;bl.0spam.org</code></li>
<li>Two previous tests were run with <code>zen.spamhaus.org;dnsbl.sorbs.net</code> but the SORBS quickly caught a false-positive within minutes, so I removed SORBS in favour of <code>zen.spamhaus.org;bl.spamcop.net</code> and while that was much better it still got one false-positive after a few hours so since this is all being tested I opted to try the above and current list of <code>zen.spamhaus.org;bl.mailspike.net;bl.0spam.org</code> which so far has worked perfectly with no false-positives, but am still testing and watching the "denied" mail server logs carefully for any false-positives.</li>
</ul>
]]></description><link>https://forum.cloudron.io/post/27962</link><guid isPermaLink="true">https://forum.cloudron.io/post/27962</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Tue, 16 Mar 2021 05:18:17 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Tue, 16 Mar 2021 03:13:58 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/robi" aria-label="Profile: robi">@<bdi>robi</bdi></a> Correct, yes. And I <a href="https://forum.cloudron.io/topic/4665/ability-for-spam-messages-to-not-be-forward-via-mailing-list/1">filed a feature request for improving the mail lists when it detects a spam message</a> a few days ago too for anyone else coming across this that wants to vote it up <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=";-)" alt="😉" /> (I see you already did which is awesome)</p>
]]></description><link>https://forum.cloudron.io/post/27952</link><guid isPermaLink="true">https://forum.cloudron.io/post/27952</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Tue, 16 Mar 2021 03:13:58 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Tue, 16 Mar 2021 01:31:34 GMT]]></title><description><![CDATA[<p dir="auto">it sounds like the mailing list feature just needs to take into consideration the spam score and avoid processing that mail.</p>
<p dir="auto">usually forwards happen before a sieve filter, so unless you can only fwd things from a specific folder like inbox, it's going to send everything.</p>
]]></description><link>https://forum.cloudron.io/post/27947</link><guid isPermaLink="true">https://forum.cloudron.io/post/27947</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Tue, 16 Mar 2021 01:31:34 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Mon, 15 Mar 2021 22:13:01 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/moocloud_matt" aria-label="Profile: moocloud_matt">@<bdi>moocloud_matt</bdi></a> Congratulations on the new baby, that's awesome news! <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f476.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--baby" style="height:23px;width:auto;vertical-align:middle" title=":baby:" alt="👶" /></p>
<blockquote>
<p dir="auto">will not resolve the issue and make the setup harder for newbies</p>
</blockquote>
<p dir="auto">I don't think I agree with that. Nothing will "resolve the issue" of spam itself (if that's what you meant by "the issue"), spam will never be 100% blocked and there will always be false-positives too. The goal is simply to reduce the level of spam and reducing the level of false-positives (or at least keeping it at an acceptable level), and that's where the extra customization comes into play.</p>
<p dir="auto">I also don't think it will make it harder for "newbies" at all, because the out-of-the-box Cloudron setup would not change (at least I don't envision it would). Having the ability to set extra DNSBL checks for denying messages before they get processed shouldn't make anything harder for anyone - I should be able to setup a new Cloudron instance just as easily as I can today. Nothing should change there. Only the option to add new DNSBL checks to deny messages for example would be added as a completely optional feature to enable - it'd basically only be touched by "power users" and actual mail administrators who are comfortable making those tweaks and already looking to make such changes in the first place.</p>
<p dir="auto">I agree though that there's plenty of different ways to improve spam filtering and this is just one of many possible ways that I hope to see (and many others from the community too judging by how many mail improvements / feature requests exist in the Cloudron forum).</p>
<blockquote>
<p dir="auto">For the fwd issue use a sieve forward from imbox this should prevent email marked as spam to been sent out</p>
</blockquote>
<p dir="auto">That is an interesting approach, and I'll consider it. My first thought though is... while it may technically be a valid workaround, in my case I don't think this option is feasible though as I have too many accounts to do this for. I have roughly 20+ recipients on my server who only are setup for mailing lists to forward to their own personal email accounts on common domains (no mailboxes on Cloudron). This workaround means I'd need to setup about 20+ mailboxes, not only that but also set them all up consistently and accurately. This leaves a lot of room for human error in my case and a lot of overhead if I ever wanted to make a quick tweak and keep it consistent across them all. If I only had a few, that'd be no problem, but I think I have too many for that to be feasible in my case, unfortunately. I appreciate the thought there though, I hadn't really considered that as a possible workaround before.</p>
]]></description><link>https://forum.cloudron.io/post/27935</link><guid isPermaLink="true">https://forum.cloudron.io/post/27935</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Mon, 15 Mar 2021 22:13:01 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Mon, 15 Mar 2021 21:11:15 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/d19dotca" aria-label="Profile: d19dotca">@<bdi>d19dotca</bdi></a><br />
ok,<br />
that's the main reason that pushes us to use a centralized mail gateway, having control over incoming and outgoing traffic is fundamental for provider, and learning+settings are easier to do.<br />
Cloudron with Haraka can't be a replacement of good email proxy or antispam, if you think all the service to prevent spam been send or received are some kind of proxy, for example, rspamd is build to have a demon on the mail server but all the elaboration is done in an external server.</p>
<p dir="auto">I'm sure that with better setup of DNSBL, URIBL,DCC, and SURBL  will be better, but will not resolve the issue and make the setup harder for newbies.</p>
<p dir="auto">For the fwd issue use a sieve forward from imbox this should prevent email marked as spam to been sent out.</p>
<p dir="auto">Sorry if miss some point, I'm in paternity leaving so sleep is not a thing. (not for a baby. for now just an adorable husky that doesn't understand that he can sleep at night)</p>
]]></description><link>https://forum.cloudron.io/post/27927</link><guid isPermaLink="true">https://forum.cloudron.io/post/27927</guid><dc:creator><![CDATA[MooCloud_Matt]]></dc:creator><pubDate>Mon, 15 Mar 2021 21:11:15 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Mon, 15 Mar 2021 20:43:45 GMT]]></title><description><![CDATA[<p dir="auto">Relevant but slightly off-topic, but wanted to share: <a href="https://www.intra2net.com/en/support/antispam/index.php" target="_blank" rel="noopener noreferrer nofollow ugc">https://www.intra2net.com/en/support/antispam/index.php</a></p>
<p dir="auto">That list essentially monitors many DNSBLs for effectiveness and inaccuracies too (false-positives) using their own network for running the tests on. I find it quite interesting and stumbled into it today again, and I remember seeing it many years ago too. It's always up-to-date data which is interesting.</p>
]]></description><link>https://forum.cloudron.io/post/27923</link><guid isPermaLink="true">https://forum.cloudron.io/post/27923</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Mon, 15 Mar 2021 20:43:45 GMT</pubDate></item><item><title><![CDATA[Reply to Is there a way to add in more DNSBL &#x2F; RBL sources? on Mon, 15 Mar 2021 19:51:30 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> Quick update: I changed from SORBS to SpamCop and am trying again, as I already found a false-positive when on SORBS. I checked the IP and it was basically only on SORBS and Backscatter, not SpamCop which means it would have passed as expected. I think this jives with what I thought earlier too but couldn't remember which one, I recall one of them was a bit <a href="https://www.dnsbl.com/2007/03/how-well-do-various-blacklists-work.html" target="_blank" rel="noopener noreferrer nofollow ugc">too aggressive in years past</a> as it often would block even Gmail and Hotmail mail servers which is just not feasible to do since so much legit email comes from them too.</p>
<p dir="auto">I think it was both SpamAssassin and SpamCop I used on my mail server before Cloudron, so I've set it accordingly now. It now reads <code>zen.spamhaus.org;bl.spamcop.net</code> for the zone.</p>
]]></description><link>https://forum.cloudron.io/post/27920</link><guid isPermaLink="true">https://forum.cloudron.io/post/27920</guid><dc:creator><![CDATA[d19dotca]]></dc:creator><pubDate>Mon, 15 Mar 2021 19:51:30 GMT</pubDate></item></channel></rss>