<div dir="ltr"><div><div><div><div>I found that whole domain <a href="mailto:00000143a938e8c1-a7816299-e8ee-4a53-be72-1b13349262f1-000000@amazonses.com" target="_blank">amazonses.com</a> was at blacklist on sender_score_map on one of the included file (<br>
</div>So amavis make check for both envelope sender and From header field.<br></div>wbl soft-blacklist executed before, score got 100 points and is rejected (in my case).<br><br></div>Is it posssible to make whitelist check before blacklist ?<br>
</div><br><div class="gmail_extra"><br><br><div class="gmail_quote">2014/1/21 Nick I <span dir="ltr"><<a href="mailto:nickyidx@gmail.com" target="_blank">nickyidx@gmail.com</a>></span><br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div dir="ltr"><div><div>Here is what i found.<br></div>i set log_level = 5 and send test with spoofed from address:<br><br># telnet localhost 25<br>Trying 127.0.0.1...                                                                                                                                                                     <br>

Connected to localhost.                                                                                                                                                                 <br>Escape character is '^]'.<br>

220 *****.com ESMTP Postfix<br>helo localhost<br>250 *****.com<br>MAIL FROM:<<a href="mailto:00000143a938e8c1-a7816299-e8ee-4a53-be72-1b13349262f1-000000@amazonses.com" target="_blank">00000143a938e8c1-a7816299-e8ee-4a53-be72-1b13349262f1-000000@amazonses.com</a>><br>

250 2.1.0 Ok                                                                                                                                                                            <br>RCPT TO:<<a href="mailto:recipient@example.com" target="_blank">recipient@example.com</a>>                                                                                                                                                                <br>

250 2.1.5 Ok<br>Data<br>354 End data with <CR><LF>.<CR><LF><br>From: <DoNotReply@ConnectedCommunity.org><br>Subject: TEST telnet<br>sdfsdf <br>.<br>250 2.0.0 from MTA(smtp:[127.0.0.1]:10025): 250 2.0.0 Ok: queued as D169A26CE6<br>

quit<br>221 2.0.0 Bye<br><br><br></div>Amavis log:<br>wbl: checking sender <<a href="mailto:00000143a938e8c1-a7816299-e8ee-4a53-be72-1b13349262f1-000000@amazonses.com" target="_blank">00000143a938e8c1-a7816299-e8ee-4a53-be72-1b13349262f1-000000@amazonses.com</a>>, <DoNotReply@ConnectedCommunity.org><br>

<div>wbl: soft-whitelisted (-100) sender <DoNotReply@ConnectedCommunity.org> => <<a href="mailto:recipient@example.com" target="_blank">recipient@example.com</a>>, recip_key="<a href="http://example.com" target="_blank">example.com</a>"<br>

...<br>header: X-Spam-Status: No, score=-98.256 tag=-1000 tag2=5 kill=100\n\ttests=[ALL_TRUSTED=-1, AM.WBL=-100, MISSING_DATE=1.396,\n\tMISSING_HEADERS=1.207, MISSING_MID=0.14, TVD_SPACE_RATIO=0.001]\n\tautolearn=disabled\n<br>

<br></div><div>So it does work from this test.<br></div><div>But wbl does not work in real mail flow when senders are different, only 1st checked.<br><br></div><div>Any thoughts?<br></div><div><br></div></div><div class="HOEnZb">
<div class="h5"><div class="gmail_extra">
<br><br><div class="gmail_quote">2014/1/21 Nick I <span dir="ltr"><<a href="mailto:nickyidx@gmail.com" target="_blank">nickyidx@gmail.com</a>></span><br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">

<div dir="ltr"><div><div><div>Patrick,<br><br>I do not want to change score for the spamassassin and optimise it in that way.<br></div><div>Because if i reduce spam score i can pass some spam to come in. <br></div><div>Also i do not want to whitelist whole domain <a href="http://amazonses.com" target="_blank">amazonses.com</a>.</div>


<div><br></div>I suppose that amavis can whitelist sender <a href="mailto:sender@domain.com" target="_blank">sender@domain.com</a> (at From header field) if it is at sender_score_maps.<br><br></div>I know that it is better to use<font color="#461b7e"> author_to_policy_bank_maps for whitelist purpose but i already have huge </font>sender_score_maps list which works per user.<br>


<br></div><div>Can you please suggest if there is another option that control whilteist sender listed at From header field? What should i see in amavis debug for the sender whilteist?<br><br></div><div>Thanks.<br></div><div>


<br></div><br></div>
</blockquote></div><br></div>
</div></div></blockquote></div><br></div></div>