Educause Security Discussion mailing list archives

Re: Spamhaus DROP list implementation?


From: "King, Ronald A." <raking () NSU EDU>
Date: Wed, 29 Apr 2009 11:23:09 -0400

We have a script running on a Linux box every morning.  It downloads the
latest list, compares it to yesterday's, and generates an email notification
of the changes.  The report also contains Cisco commands to apply to the
ASA's Spamhaus ACL, both remove and add.  We manually apply the changes as
we are hesitant to automate it.  While we have no statistics, we have had
only one case where we were notified it caused problems, when private IPs
where included in the list. That was a fun one...

Ronald King
Security Engineer
Norfolk State University
Marie V. McDemmond Center for Applied Research 
Suite 401 
700 Park Ave.
Norfolk, Virginia  23504
Phone:  757-823-3918
Email: raking () nsu edu
http://security.nsu.edu


-----Original Message-----
From: The EDUCAUSE Security Constituent Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Mike Marseglia
Sent: Wednesday, April 29, 2009 10:28 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] Spamhaus DROP list implementation?

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Has anyone implemented the Spamhaus DROP list?  Pros/Cons?


http://www.spamhaus.org/drop/

Thank you,

Mike Marseglia, OSHEAN
w. 401-886-0887 x208
c. 401-248-4867
e. mike () oshean org


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Use GnuPG with Firefox : http://getfiregpg.org (Version: 0.7.5)

iEYEARECAAYFAkn4Y98ACgkQN2NJvrD3H8wtvwCdGrmqUFssrXV8c++jKC0mrKYj
KqoAnidHML+MUxTE5HbJvDMiKO9r7RKY
=5fQ7
-----END PGP SIGNATURE-----

Attachment: smime.p7s
Description:


Current thread: