SA Bugzilla – Bug 4516
RCVD_BY_IP, RCVD_IN_BL_SPAMCOP_NET and RCVD_IN_SORBS_WEB are also applied to intermediate relays
Last modified: 2008-02-28 04:25:42 UTC
The RCVD_BY_IP, RCVD_IN_BL_SPAMCOP_NET and RCVD_IN_SORBS_WEB are applied not only to the last SMTP relay, but also to previous ones listed in Received headers. If this is intended, I think it is a very bad idea. RCVD_BY_IP will catch mail programs unable to find an hostname, while RCVD_IN_BL_SPAMCOP_NET and RCVD_IN_SORBS_WEB will result in hosts listed in that blacklists to have no way of sending mail out without a positive spam score, regardless of the SMTP service they use. Furthermore, other blacklists seem to be only applied to the last relay, so these two probably should too.
please attach sample message(s) that exhibits this behaviour using the "Create New Attachment" link. I suspect there may be a trust path issue.
Created attachment 3052 [details] Sample message This message was sent using Mozilla Thunderbird through the Gmail SMTP SSL server using my Gmail account to my traditional ISP account at fastwebnet.it.
RCVD_BY_IP: has been removed RCVD_IN_BL_SPAMCOP_NET, RCVD_IN_SORBS_WEB: our opinion is that it makes sense for these rules to fire if any of the untrusted relaying hosts hit these. I'm afraid that's just part of SA's design...