3 ms·
More damage than spammers? I see you've never run a mailserver. I have and I know that Spamhaus are one of the good guys doing a hard thankless job, risking law
by whortleberry 15y ago
More damage than spammers? I see you've never run a mailserver. I have and I know that Spamhaus are one of the good guys doing a hard thankless job, risking lawsuits and threats, in order to keep email as a useful tool. Spamhaus' RBL is the most reputable of all of them, thanks to years of hard work and sacrifice.
The only people who don't like Spamhaus, in my view, are those ISPs who were happy to make money from selling connectivity to spammers while pretending in public that they hated spam. Them, and people who don't understand what Spamhaus do, like the author of this article, and who think Spamhaus are to blame for their troubles.
- SageRaven 15y agoThe GP is correct. As one who has worked in the trenches as a mail admin (small potatoes, granted: a few small clients and a couple of small hosting companies), my observation has been than customers bitch way more about the MX servers which reject mail from our servers than the amount of spam in their own in-boxes. They don't give a shit that the recipient is rejecting legitimate mail -- they blame us for their problems. All because some asshat with a copy of TheBat! signed up and managed to send out a couple hundred "Russian bride" spams before we were alerted and nuked the account. I could probably fund a semester of college for some random kid with the time I've been paid to waste on de-listing and convincing idiot admins that one of their customers really wants to get mail from one of mine. Sure, 99.9% of email hitting the typical in-bound relay is spam, but CPU, RAM, and disk I/O are cheap. Do per-inbox statistical filtering and let the user decide what spam is. Better yet, let client-side filters do the work. Do you think any person would stand to allow a US Postal carrier decide what was junk mail and then not deliver it? People just need to buck up and put in a little of their own effort. I haven't used an RBL (even if its just one in a battery of weighted tests, such as with Spam Assassin) due to my loathing for the vigilante nature of the RBL scene as a whole. If you operate an RBL -- fuck you. If you are an admin that rejects mail based solely on being listed in RBLs, then fuck you, too. I know I sound like an asshole myself here, but the existence of RBLs has caused me and various mail end-users way more pain than any spammer has. Bitter? Nah. As a mail admin, I want to throw SMTP out the window. It wasn't spammers that killed the protocol, but rather the growth of use of RBLs. Rant aside, I do have a question to contribute to the discussion: Has one of the larger RBLs ever listed one of the huge mail providers (Gmail, MSN/Hotmail, Yahoo?) for any length of time? I know I've gotten spams and scams from all three.
- whortleberry 15y ago> They don't give a shit that the recipient is rejecting legitimate mail -- they blame us for their problems. All because some asshat with a copy of TheBat! signed up and managed to send out a couple hundred "Russian bride" spams before we were alerted and nuked the account. Funny that. The RBL providers found out about the spam and tracked it down long before you did. > I could probably fund a semester of college for some random kid with the time I've been paid to waste on de-listing and convincing idiot admins that one of their customers really wants to get mail from one of mine. Or you could hire a competent mail administrator and not have to deal with these issues at all. One that knows how to keep his outbound mail clean, one that makes sure he knows about spam in his outbound connection before the recipient does, and one that makes sure that his upstream is a reputable and trustworthy provider and not some fly-by-night cheap hoster who happily sells space to spammers. > Sure, 99.9% of email hitting the typical in-bound relay is spam, but CPU, RAM, and disk I/O are cheap. Do per-inbox statistical filtering and let the user decide what spam is. Better yet, let client-side filters do the work CPU, RAM and disk are not that cheap. But why should ISPs have to pay for a vast panoply of hardware to handle the garbage being poured out by disreputable providers elsewhere? If an ISP allows spam on their connection, they get cut off, period. Their connectivity to the internet, the commodity they sell, is dependant upon the goodwill and trust of their neighbours. If they abuse it, they lose that commodity. As for per-inbox statistical filtering, why bother, when running an RBL like Spamhaus removes the crap and, more importantly, forces the hosters to do their job or lose their connectivity. > If you operate an RBL -- fuck you. If you are an admin that rejects mail based solely on being listed in RBLs, then fuck you, too. I did run them when I was a mail administrator - my users demanded that I do something about spam, so I did. RBLs work, and I wholeheartedly support Spamhaus in their efforts, and wish that more SMTP providers would use them. As for your attitude, that merely demonstrates that you are a two-bit amateur. > As a mail admin, I want to throw SMTP out the window. It wasn't spammers that killed the protocol, but rather the growth of use of RBLs. Don't call yourself a mail admin while at the same time spouting asinine garbage that demonstrates that you know nothing whatsoever about being a mail administrator. RBLs never did harm to email - they were a solution invented to try to save SMTP from the spam deluge. Not only did they stem the tide of spam, they also provided lots of evidence which could be used to name and shame the worst spam hosts and provide evidence to legal authorities to take action against the criminals running the spam operations. No amount of squandering money on client-side filtering or statistical analysis is going to do that. And that is why no competent mail administrator rejects the use of RBLs, since they know that they are the only solution that makes any actual difference.