This is a discussion on Re: Using sender e-mail address or message content data in WHOISsearch - SpamAssassin ; Thanks, Mouss, for the pointers, but I still don't understand where the addresses and phone numbers in 70_sare_evilnum come from. Can SpamAssassin be configured to scan a message, pick up a domain and then do a WHOIS search, or did ...
Thanks, Mouss, for the pointers, but I still don't understand where the
addresses and phone numbers in 70_sare_evilnum come from. Can SpamAssassin
be configured to scan a message, pick up a domain and then do a WHOIS
search, or did someone go through a few e-mails by hand, query WHOIS using
the domain names found and add the phone #/address info to 70_sare_evilnum?
I kind of doubt the second possibility, but had to ask ;-)
> FractalBob wrote:
>> Sure, they do spoof, but one could write a script that pokes around the
>> message content, looking for a URL or signature and use that instead.
>> I found some rulesets, 70_sare_evilnum*.cf, that seem to do what I want,
>> I don't know how to use them; documentation is scarce for SpamAssassin.
>> anyone know what these files are and how to use them?
> these are SARE rules
> and chose which rules you want to use.
> Then use sa-update to download them (periodically):
> for more docs, check
View this message in context: http://www.nabble.com/Using-sender-e...p20387122.html
Sent from the SpamAssassin - Users mailing list archive at Nabble.com.