Tilted Forum Project Discussion Community  

Go Back   Tilted Forum Project Discussion Community > Interests > Tilted Technology


 
 
LinkBack Thread Tools
Old 01-30-2005, 12:25 PM   #1 (permalink)
Upright
 
Location: 127.0.0.1
email questions

hi all, its sunday and this has been nagging at me for a while...

so my school email is constantly bombarded with spam, and i mean a lot. i have the spamguard settings pretty high up, and a pretty extensive list of filters. i have managed to bring down the amount i actually see to a manageable level.
its mildly amusing seeing how they are trying to get past the spamguard.
things like morgage spelled in half "1337". or records spelled wrong. yeah, because when i see gross misspellings and writing like a 14yr. old i think nothing but fortune 500 baby.
yeah.
but as of recently i have been recieving emails with spoofed addresses. stuff like the to: feild is filled in with a different name than mine. so i have a two part question.
1) is it possible to make sure that the to feild says to me, otherwise the email gets deleted, like a filter but just to verify that the addresse is me.
2) how are they able to spoof that type of stuff? like the to and from feilds? is it an application that does it for them or do they have to manually set that info?
7w17ch is offline  
Old 01-30-2005, 04:56 PM   #2 (permalink)
Professional Loafer
 
bendsley's Avatar
 
Location: texas
How is your school currently filtering spam? What mail server (if known)? Is this district wide email system or something privy only to your school?

One of the things I'm thinking of is DomainKeys, by Yahoo!.

DomainKeys is an anti-spam software application in development at Yahoo that uses a form of public key cryptography to authenticate the sender's domain. Today, the sender of a spam message can spoof the originating address so that recipients will think it came from someone else and thus open it as legitimate mail. Yahoo's software would enable the receiving end of e-mail to easily filter out notes in which the sender's stated address could not be authenticated as the actual address. Yahoo plans to make its software freely available to open-source developers, hoping that it will be adopted, installed, and implemented throughout the Internet. In a Reuters interview Brad Garlinghouse, Yahoo's VP of communications products, described the scope of the DomainKeys initiative: "What we're proposing here is to re-engineer the way the Internet works with regard to the authentication of e-mail."

In the Yahoo anti-spam system, an e-mail message would have the originating domain's private key securely embedded in its header. When the message arrives at its destination, the key can be compared to the stated domain's public key in the domain name system (DNS) listings to verify that it actually comes from where it says it comes from. Messages that originate from known sources of spam or from domains other than the one they claim to be from could be rejected by the recipient's server.

The Internet community is divided on whether or not the Yahoo effort is likely to work. For one thing, the software would have to be widely accepted to be successful. Furthermore, some critics believe if DomainKeys was broadly implemented it would lead to an unacceptable slowing of transmission due to the extra handling of each message. Another concern is that spammers could carry out replay attacks, in which the attacker intercepts messages, steals legitimate digital signatures, and then forges messages using them. However, such problems are not insuperable. Proponents argue that Yahoo has a potential solution to the spam problem in DomainKeys and that, with the ever-increasing glut of spam on the Internet, we should give even possible solutions a good trial before dismissing them.

Currently, DomainKeys is implemented in current versions of Sendmail.

If you are not currently running Sendmail, and willing to update it, I would suggest putting an SMTP proxy in front of the mail server itself to weed out unwanted emails and viruses. Using amavisd, clamav, spamassassin, pyzor and razor, this is possible, and works damn well. Also, if you did something like this, you could have a script run every night to update ldap information (if you're using LDAP) and only accept mail to current accounts. This would be nice since every year the school unloads a class and gains a new one.

I have only setup this smtp proxy on debian sarge, so, there may be a few changes.
If you want a step by step guide, go to www.floabie.com/spam
__________________
"You hear the one about the fella who died, went to the pearly gates? St. Peter let him in. Sees a guy in a suit making a closing argument. Says, "Who's that?" St. Peter says, "Oh, that's God. Thinks he's Denny Crane."
bendsley is offline  
Old 01-31-2005, 04:18 PM   #3 (permalink)
Stop. Think. Question.
 
rubicon's Avatar
 
Location: Redondo Beach, CA
You can try out Spam Arrest. It front-ends all of your messages using a challenge/response system. You can add your "friendly" addresses so those people don't need to respond to the challenge. I doubt any spammer is going to read through the bounces to reply to the challenge. Besides, you still have the ability to deny them if someone should.
__________________
How you do anything is how you do everything.
rubicon is offline  
 

Tags
email, questions


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -8. The time now is 04:47 AM.

Tilted Forum Project

Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0 PL2
© 2002-2012 Tilted Forum Project

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360