Old 09-16-2011, 09:02 AM   #1 (permalink)
Untangler
 
Join Date: Nov 2010
Posts: 65
techuser is on a distinguished road
Default Spam Block .ru

Will this work?

1. Create the file block.cf in /etc/spamassassian

blacklist_from *@*.ru

Will this essentially block all emails from that come from .ru?

If I want to allow a specific ".ru" address, can I simply add the single .ru email that I want to add back via the GUI?

I am really surprised that there isn't a GUI blacklist in Untangle.

I am having an issue where it appears that my clients are getting lots of emails that are coming from russia.
techuser is offline  
Old 09-16-2011, 11:52 AM   #2 (permalink)
miw
Untangler
 
Join Date: Jun 2008
Posts: 32
miw is on a distinguished road
Default Block mail from country specific TLDs

Hi, hopefully this will give you some more information about how to block country specific top level domains (TLDs) in SpamAssassin.

1. To block countries: There are two local.cf files.. There is the Server Local.cf and the domain local.cf: You can simply put the following in your server local.cf file and restart sendmail and spamassassin.. (from NjWebHost sitepoint)

ru REJECT



http://bit.ly/qRSomu
miw is offline  
Old 09-16-2011, 12:15 PM   #3 (permalink)
Untangler
 
Join Date: Nov 2010
Posts: 65
techuser is on a distinguished road
Default

In the folder /etc/spamassassin, I am only seeing one local.cf file.

Looking at the file,

I only see...

# Untangle global Spam Blocker settings
score ALL_TRUSTED 0
lock_method flock
auto_whitelist_factor 0.3
pyzor_timeout 3

# A simple-to-parse report format
clear_report_template
report _SUMMARY_

So all that is needed is to add "ru Reject" as the end of the file, and then restart the Spam Assassin service?
techuser is offline  
Old 09-16-2011, 12:28 PM   #4 (permalink)
Untangler
 
Join Date: Nov 2010
Posts: 65
techuser is on a distinguished road
Default

I am unsure if I did this correctly, but it didn't appear to break the server.

cd /etc/spamassassin
pico block.cf
blacklist_from *@domain.ru
chmod +x block.cf
/etc/init.d/spamassain restart

I did a ps -ef | grep spamd and it appears that the spam process is running.
techuser is offline  
Old 09-16-2011, 12:30 PM   #5 (permalink)
Untangler
 
Join Date: Nov 2010
Posts: 65
techuser is on a distinguished road
Default

I am still not sure if I can just add to the block.cf file "*@*.ru".

The local.cf file method posted earlier, is not exactly clear. In looking on the server, I only saw one local.cf file. Do you just add "ru REJECT" at the end?
techuser is offline  
Old 09-16-2011, 01:32 PM   #6 (permalink)
Untangle Ninja
 
mrunkel's Avatar
 
Join Date: Jul 2008
Posts: 2,768
mrunkel is on a distinguished road
Default

moved to hacks.
__________________
m.


Big Frickin Disclaimer:
While I'm pretty sure, I can't guarantee that I know what I'm doing. There might be a better way to do this, and this way might actually suck. Make sure you understand the implications of what you're doing before trying to follow these directions.

It often helps troubleshooting if you have a good network map. Look here if you want my advice on how to draw one.
Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself.
If you need Untangle support please call or email support@untangle.com
mrunkel is offline  
Old 09-16-2011, 03:31 PM   #7 (permalink)
miw
Untangler
 
Join Date: Jun 2008
Posts: 32
miw is on a distinguished road
Default

Quote:
Originally Posted by techuser View Post
I am still not sure if I can just add to the block.cf file "*@*.ru".

The local.cf file method posted earlier, is not exactly clear. In looking on the server, I only saw one local.cf file. Do you just add "ru REJECT" at the end?
My understanding is yes you would just append "ru REJECT" to the end of the file, but I haven't tested that in an Untangle with SpamAssassin environment; please let me know if it is successful.
miw is offline  
Old 09-20-2011, 12:15 PM   #8 (permalink)
Untangler
 
Join Date: Nov 2010
Posts: 65
techuser is on a distinguished road
Default

This has been applied into production, and so far I have not received any unwanted emails.
techuser is offline  
Old 09-21-2011, 06:24 AM   #9 (permalink)
Untangler
 
Join Date: Nov 2010
Posts: 65
techuser is on a distinguished road
Default

Looking at the Networking > Advanced > File overrides. If I add the local.cf file to the overrides section, will that create a problem when performing upgrades? I'd like to ensure that the my additional rejection rules hold after minor and major upgrades.

If Untangle needs to upgrade files marked in the overrides section, will it prompt or warn the user, so that the upgrade can complete without problems.
techuser is offline  
Old 09-21-2011, 09:09 AM   #10 (permalink)
Untangle Junkie
 
dmorris's Avatar
 
Join Date: Nov 2006
Location: San Mateo, CA
URLs submitted: 10
Posts: 10,612
dmorris is on a distinguished road
Default

Quote:
Originally Posted by techuser View Post
Looking at the Networking > Advanced > File overrides. If I add the local.cf file to the overrides section, will that create a problem when performing upgrades? I'd like to ensure that the my additional rejection rules hold after minor and major upgrades.

If Untangle needs to upgrade files marked in the overrides section, will it prompt or warn the user, so that the upgrade can complete without problems.
That file override won't help. Only networking (and parts of it) check the file override list. I would just disable upgrades if you modify files on the filesystem.
__________________
Attention: Support and help on the Untangle Forums is provided by
volunteers and community members like yourself.
If you need Untangle support please call or email support@untangle.com
dmorris is offline  
Closed Thread

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 07:24 AM.


© 2010 Untangle, Inc. All Rights Reserved.   SEO by vBSEO 3.6.0 PL2