Jon’s Network

new tagline pending

Jon’s Network - Church on Pilatus

Stop Spam with Nolisting

January 25th, 2007 · No Comments

Nolisting_results_3

Joreybump.com explains a tactic to reduce the amount of spam a network receives using less resources than conventional spam filters.


It has been observed that when a domain has both a primary (high priority, low number) and a secondary (low priority, high number) MX record configured in DNS, overall SMTP connections will decrease when the primary MX is unavailable. This decrease is unexpected because RFC 2821 (Simple Mail Transfer Protocol) specifies that a client MUST try and retry each MX address in order, and SHOULD try at least two addresses. It turns out that nearly all violators of this specification exist for the purpose of sending spam or viruses. Nolisting takes advantage of this behaviour by configuring a domain’s primary MX record to use an IP address that does not have an active service listening on SMTP port 25. RFC-compliant clients will retry delivery to the secondary MX, which is configured to serve the role normally performed by the primary MX (final delivery, transport rerouting, etc.).

It exploits the same non-compliant behavior of spammers as Greylisting, but in a simpler fashion.

Tags: Spam

0 responses so far ↓

  • There are no comments yet...Kick things off by filling out the form below.

Leave a Comment