public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
* ORBS blacklist is BROKEN (deliberately)...
@ 2001-07-14  8:55 Matti Aarnio
  2001-07-14  9:12 ` Keith Owens
  0 siblings, 1 reply; 12+ messages in thread
From: Matti Aarnio @ 2001-07-14  8:55 UTC (permalink / raw)
  To: linux-kernel, linux-admin

This is a good representative sample of things I am seeing right now.

The crux is that those who broke it are running a very black version
indeed.  Doing command:

  dig @63.92.26.236 any *.relays.orbs.org.

will show you A and TXT data FOR WILDCARD ('star') ENTRY!
AND ONLY FROM THAT ONE SERVER OUT OF THEM ALL!

I also went around and checked all other alike services.
The grand-father of them:  RBL  (www.mail-abuse.org)  is now
A SUBSCRIPTION ONLY service, thus it also is out of the picture...
(Except for those who want to subscribe it.)




FAILED:
  Original Recipient:
    rfc822;camm@enhanced.com
  Control data:
    smtp enhanced.com camm@enhanced.com 99
  Diagnostic texts:
...\
    <<- MAIL From:<linux-kernel-owner@vger.kernel.org> SIZE=2586
    ->> 250 <linux-kernel-owner@vger.kernel.org> is syntactically correct
    <<- RCPT To:<camm@enhanced.com>
    ->> 550-MAIL BLOCKED; See http://www.e-scrub.com/orbs/
    ->> 550 rejected: administrative prohibition
FAILED:
  Original Recipient:
    rfc822;linux-kernel@cs.helsinki.fi
  Control data:
    smtp cs.helsinki.fi linux-kernel@cs.helsinki.fi 99
  Diagnostic texts:
...\
    <<- MAIL From:<linux-kernel-owner@vger.kernel.org> BODY=8BITMIME SIZE=2586
    ->> 250 2.1.0 <linux-kernel-owner@vger.kernel.org>... Sender ok
    <<- RCPT To:<linux-kernel@cs.helsinki.fi> NOTIFY=FAILURE ORCPT=rfc822;linux-kernel@cs.helsinki.fi
    ->> 550 5.7.1 <linux-kernel@cs.helsinki.fi>... Mail from vger.kernel.org blocked by DNS blacklist inputs.orbs.org, see http://www.cs.Helsinki.FI/block.html
FAILED:
  Original Recipient:
    rfc822;samkaski@cs.helsinki.fi
  Control data:
    smtp cs.helsinki.fi samkaski@cs.helsinki.fi 99
  Diagnostic texts:
...\
    <<- MAIL From:<linux-kernel-owner@vger.kernel.org> BODY=8BITMIME SIZE=2586
    ->> 250 2.1.0 <linux-kernel-owner@vger.kernel.org>... Sender ok
    <<- RCPT To:<samkaski@cs.helsinki.fi> NOTIFY=FAILURE ORCPT=rfc822;samkaski@cs.helsinki.fi
    ->> 550 5.7.1 <samkaski@cs.helsinki.fi>... Mail from vger.kernel.org blocked by DNS blacklist inputs.orbs.org, see http://www.cs.Helsinki.FI/block.html
FAILED:
  Original Recipient:
    rfc822;hjubing@china.com
  Control data:
    smtp china.com hjubing@china.com 99
  Diagnostic texts:
...\
    <<- MAIL From:<linux-kernel-owner@vger.kernel.org> BODY=8BITMIME
    ->> 250 <linux-kernel-owner@vger.kernel.org>, sender ok.
    <<- RCPT To:<hjubing@china.com>
    ->> 250 <hjubing>, Local recipient ok.
    <<- DATA
    ->> 354 Start mail input; end with <CRLF>.<CRLF>
    <<- .
    ->> 553 Too many Received key words in the mail, should less than 5
FAILED:
  Original Recipient:
    rfc822;giampietro@mailbox.dsnet.it
  Control data:
    smtp mailbox.dsnet.it giampietro@mailbox.dsnet.it 99
  Diagnostic texts:
...\
    <<- MAIL From:<linux-kernel-owner@vger.kernel.org> BODY=8BITMIME SIZE=2586
    ->> 553 sorry, your mailserver is listed in an RBL, mail from your location is not accepted here (#5.7.1)
    <<- RCPT To:<giampietro@mailbox.dsnet.it>
    ->> 503 MAIL first (#5.5.1)


^ permalink raw reply	[flat|nested] 12+ messages in thread
* Re: ORBS blacklist is BROKEN (deliberately)...
@ 2001-07-15  1:39 Wayne.Brown
  0 siblings, 0 replies; 12+ messages in thread
From: Wayne.Brown @ 2001-07-15  1:39 UTC (permalink / raw)
  To: linux-kernel



I don't understand.  Other sites are connecting to his server and trying to
obtain information he doesn't want to provide.  He's tried repeatedly to have
his server removed as a nameserver for orbs and been refused.  So now he's
chosen to return bogus answers to sites that query his server against his will.
How can that be a crime?

It reminds me of something I read once about a man who started receiving lots of
phone calls intended for a business.  It seems the business had recently gotten
a new phone number that was the same as his home number (but with a different
area code).  People who called the new number (but left out the area code)
reached the man's home.  He tried to get the business to change their new number
(they'd had it for only a short time, whereas he had had his number for years).
They refused.  So he started answering these calls by pretending to be an
employee of the business and being rude to the customers.  For instance, he told
customers whose voices identified them as members of minority groups, "We don't
do business with you people -- you never pay your bills."  It didn't take long
before the business changed their phone number to something that didn't remotely
resemble his number.

This seems to me to be much the same sort of thing.  I find both solutions
rather clever, as they bring pressure to bear on the guilty party from sources
whose complaints are more difficult to ignore than those of the original
complainant himself.





Alan Cox <alan@lxorguk.ukuu.org.uk> on 07/14/2001 07:17:46 AM

To:   kaos@ocs.com.au (Keith Owens)
cc:   matti.aarnio@zmailer.org (Matti Aarnio), linux-kernel@vger.kernel.org,
      linux-admin@vger.kernel.org (bcc: Wayne Brown/Corporate/Altec)

Subject:  Re: ORBS blacklist is BROKEN (deliberately)...



> http://www.e-scrub.com/orbs/ is the key.  "Ronald F. Guilmette"
> <rfg@monkeys.com> sent this message to spam lists.  Anybody still using
> ORBS for lookups can expect to get random mail bounces.

Yeah he's decided to solve his load problem by committing an act of criminal
fraud, computer misuse and a few other violations

> Because of the way Alan disabled the former ORBS list zones, my name
> server is now shouldering (at least) 1/11th of the total world-wide

[I think he means the way the courts did..]

And guess what, as soon as ORBS got beaten off the net MAPS starts talking
about charging for their service, just like they promised they never would

Alan
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/






^ permalink raw reply	[flat|nested] 12+ messages in thread

end of thread, other threads:[~2001-07-15 20:12 UTC | newest]

Thread overview: 12+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2001-07-14  8:55 ORBS blacklist is BROKEN (deliberately) Matti Aarnio
2001-07-14  9:12 ` Keith Owens
2001-07-14 12:17   ` Alan Cox
2001-07-14 22:33     ` David Ford
2001-07-15 11:24     ` Kai Henningsen
2001-07-15 12:49       ` Keith Owens
2001-07-15 18:07     ` Michael H. Warfield
2001-07-15 19:25       ` Glynn Clements
2001-07-15 19:44         ` Alan Cox
2001-07-15 20:06           ` Glynn Clements
     [not found]   ` <9ipdh9$114$1@ns1.clouddancer.com>
2001-07-14 15:57     ` Colonel
  -- strict thread matches above, loose matches on Subject: below --
2001-07-15  1:39 Wayne.Brown

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox