Home > Microsoft Exchange Tips > Exchange Security Tips > Freeware 'greylisting' for Exchange Server
Exchange Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

EXCHANGE SECURITY TIPS

Freeware 'greylisting' for Exchange Server


Serdar Yegulalp
03.07.2007
Rating: -4.33- (out of 5)


Exchange Server tips, tutorials and expert advice
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


You're probably familiar with whitelisting and blacklisting as methods to fight spam -- basically keeping lists of known-good and known-bad email servers, respectively.

Between blacklisting and whitelisting is a sort of interim strategy called greylisting (also known as graylisting). Greylisting involves exploiting a behavior to which RFC-compliant mail servers are supposed to adhere -- and to which spammers rarely do.
VIEW MEMBER FEEDACK TO THIS EXCHANGE SECURITY TIP

How greylisting works

When a mail server connects to your mail server to send a given piece of email for the first time, a greylist notes the IP address and the email is rejected with a "Try Again Later" warning. If the server at the other end is running in compliance with the RFC standards for email, it'll try again later as it's just been instructed to.

The next time that server tries to deliver the email, your server will mark that server as "good" and allow future deliveries. On the other hand, many spammers will simply abandon any future delivery attempts after seeing the "Try Again Later" warning, since they typically just want to blast out as many emails as they can without retrying.

Also, during the retry period -- typically an hour or so -- there's a chance that the spammer's IP will be blocked by more conventional antispam techniques. In a way, greylisting is a little like a selective tarpitting scheme.

Programmer Chris J. has written a freeware greylist for Exchange Server, now called JEP(S). This application offers Exchange Server administrators a no-cost option for implementing and testing the effectiveness of greylisting as a spam-fighting mechanism.

The program installs as a .DLL that hooks into Exchange Server's SMTP service, and allows administrative control over the list of IP addresses tracked by the .DLL (so specific addresses can be manually added or removed).

Much of the effectiveness of greylisting is admittedly anecdotal. It's not something that can be recommended as a blanket solution, and it probably won't be a permanent one either. But the anecdotes are interesting: Chris's own experiences with greylisting cut down his spam load from about 4,000 messages a day to almost zero with no other changes.

About the author: Serdar Yegulalp is editor of Windows Insight, a newsletter devoted to hints, tips, tricks, news and goodies for all flavors of Windows users.

MEMBER FEEDBACK TO THIS EXCHANGE SECURITY TIP

JEP(S) is the new version of Greylist for Exchange. The name was changed because "Greylist for Exchange" was confusing to a lot of people. Also, it's now a commercial product instead of just an interesting project.

As before, the software is available in a free version and a licensed version. The free version is totally free without any time limit or spyware and such. New functionality includes: tarpitting, RBL, RWL, auto whitelisting, separate real-time monitor utility, and it supports IIS SMTP as well as Exchange 2000 and 2003.

Licensing: For free (advanced functions disabled), full 30-day trial license (on website), and the full license is 205 USD/149 Euro.
—Christoffer Järnåker, Proxmea

Do you have comments on this tip? Let us know.

Related information from SearchExchange.com:

  • Tip: SpamBayes -- An open-source antispam tool for Microsoft Outlook
  • Tip: Optimize your DNS blacklists with BL-Monitor
  • Tip: Fighting spam with SMTP tarpits
  • Learning Center: The spamfighter's toolbox
  • 10 tips in 10 minutes: Spam and phishing exposed
  • Learning Guide: How to fight spam on Exchange Server
  • Tutorial: How to protect Exchange Server from spam blacklists

    Please let others know how useful this tip was via the rating scale below. Do you have a useful Exchange Server or Microsoft Outlook tip, timesaver or workaround to share? Submit it to SearchExchange.com. If we publish it, we'll send you a nifty thank-you gift.

    Rate this Tip
    To rate tips, you must be a member of SearchExchange.com.
    Register now to start rating these tips. Log in if you are already a member.


    Submit a Tip




    Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


    RELATED CONTENT
    Exchange Security Tips
    Use the OWA Admin tool to 'segment' Outlook Web Access 2003 features
    Why are .PST files a security threat to Exchange Server mailboxes?
    OWA won't load after applying Exchange 2007 SP1 security patch
    Minimize remote and mobile Outlook Web Access (OWA) security risks
    Grant or deny permissions to access a user's Exchange 2007 mailbox
    Create a global Safe Senders List in Exchange 2007 to filter spam
    Migrating antispam settings from Exchange 2003 to Exchange 2007
    Deploying ISA Server as a firewall for Exchange Server mobile devices
    How to customize OWA authentication logon in Exchange Server 2003
    Exchange 2007 out-of-office (OOF) feature adds usability and security

    Antispam Software and Spam Filtering
    Secure Edge Transport servers using the Security Configuration Wizard
    Create a global Safe Senders List in Exchange 2007 to filter spam
    Migrating antispam settings from Exchange 2003 to Exchange 2007
    The six-layered secret of effective Exchange Server email filtering
    Top 10 Exchange, Microsoft Outlook and OWA email security tips of 2007
    Troubleshoot Microsoft Outlook email delivery problems
    Microsoft Outlook and Exchange Server 2003 Email Security Guide
    Top 5 Exchange Intelligent Message Filter add-on tools
    Locate 'missing' SPF record on an external DNS domain
    Native Exchange Server 2003 antispam solutions
    Antispam Software and Spam Filtering Research

    Microsoft Exchange Server Administration Tools
    Tool deploys customized Microsoft Outlook 2007 configurations
    Third-party Exchange Server 2007 backup and restore tools
    Customizing an Outlook Web Access 2003 email signature
    Tool exports messages from Microsoft Outlook to Unix .EML file format
    Monitor mail flow with the Exchange Server 2007 Queue Viewer tool
    Use Performance Monitor to detect Exchange 2003 message queue problems
    Migrating antispam settings from Exchange 2003 to Exchange 2007
    An affordable Exchange Server database backup software option for SMBs
    How to set up Remote Desktop for Exchange Server administration
    Solve server problems with the Exchange Troubleshooting Assistant tool
    Microsoft Exchange Server Administration Tools Research

    RELATED GLOSSARY TERMS
    Terms from Whatis.com − the technology online dictionary
    greylist  (SearchExchange.com)
    hash buster  (SearchExchange.com)
    image spam  (SearchExchange.com)
    KnujOn  (SearchExchange.com)
    Sender ID  (SearchExchange.com)
    spam confidence level  (SearchExchange.com)
    spamblock  (SearchExchange.com)
    spim  (SearchExchange.com)
    tarpitting  (SearchExchange.com)
    teergrube  (SearchExchange.com)

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary

    DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

  • HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersIT Downloads
    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    SEARCH 
    TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




    All Rights Reserved, Copyright 2004 - 2008, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts