Projects / synspam / Releases

All releases of synspam

  •  29 Apr 2010 21:06
Avatar

    Release Notes: A new configuration parser. A new format: you can use XML-like configuration and attribute negative scores when a DNSBL doesn't match a source IP address. The old configuration style is still supported.

    •  17 Mar 2010 07:23
    Avatar

      Release Notes: Synspam now uses the Netfilter xt_osf module. If your kernel is Linux 2.6.31 or later, this module can probably be loaded and used. A score is attributed to Windows boxes, and it should not be changed, otherwise you might get false positives with some Exchange servers. The synspam_fw.sh script has been added, which is in charge of loading and unloading iptables rules. Arguments can be passed through the command line. A EUID check was added.

      •  08 Feb 2010 09:13
      Avatar

        Release Notes: Synspam now checks both A and PTR records to be sure that the source IP address doesn't have a reverse which belongs to another network. This is a technique used by spammers to bypass some spam filters. The INSTALL file was updated with information about the kernel support needed for synspam.

        •  01 Feb 2010 09:15
        Avatar

          Release Notes: The connections filtering code was refactored; further targets may be added in the future. New functions were added to the synspam-report script for average reject score and average accept score, and it no longer makes correlation between spamassassin and synspam. An extra check was added at startup to prevent success messages from being printed when synspam segfaults.

          •  19 Jan 2010 15:49
          Avatar

            Release Notes: The user can choose between dropping packets or rejecting them. That means that instead of simply discarding packets, synspam can send a TCP RST to the source IP so that port 25 won't appear filtered, but closed. Be aware that iptables rules have changed. It's possible to start synspam in foreground or daemon mode. The default is daemon mode.

            •  13 Jan 2010 21:28
            Avatar

              Release Notes: This release detects reverses with "ip in hostname" independently from "dialup" words.

              •  07 Jan 2010 09:11
              Avatar

                Release Notes: A new client word in the botnet regexp and better detection of public IP addresses with a localhost reverse.

                •  04 Jan 2010 19:02
                Avatar

                  Release Notes: A blacklist/whitelist mechanism has been added. You can easily filter hosts to improve synspam treatments. Examples are given in synspam.conf comments. A Perl library, NetAddr::Lite, is needed. The README has been updated with NFQUEUE-related information.

                  •  27 Dec 2009 16:01
                  Avatar

                    Release Notes: A new way to bind to nfqueue should prevent errors on start or restart.

                    •  23 Dec 2009 22:38
                    Avatar

                      Release Notes: This release uses NFQUEUE instead of QUEUE, enabling users to have more than one queue on their system.

                      Screenshot

                      Project Spotlight

                      episoder

                      A tool to tell you about new episodes of your favourite TV shows.

                      Screenshot

                      Project Spotlight

                      BalanceNG

                      A modern software IP load balancer.