North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: AOL Mail Problem

  • From: Suresh Ramasubramanian
  • Date: Thu Jul 27 08:39:25 2006
  • Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=UjWmCHee4YZAE2f2B1RQtE2tlZIIpk1JSf6elkd1oLH6yNCH12u/XWAgKSzeHV0OJu4PJZfHjOSxS1Rib2NMnJB+TN5KWN7rSN7r79UriQWEsqhY1luEI3QtimFdjXJEHA6lqZ371bBeAZoKL8suKx/fGmu+NmpgdWOsqXmd9Ns=


What you have run into is called AOL's "second received line" filtering


If your adsl customer is infected, or someone who had that IP recently
[if a dynamic IP] is infected and his PC is originating spam and
malware .. AOL will block any email with that infected IP in the
headers.

Simple reason for this .. a lot of malware is getting quite good at
hijacking Outlook or other MUA on a user's PC [including smtp auth
credentials if any] and sending out spam through the ISP's mail
relays.

Please sign your IP space for a feedback loop from aol -
http://postmaster.info.aol.com/fbl/

--srs

On 7/27/06, Tom Quilling <[email protected]> wrote:
We are an ISP in Germany and experience since this morning, July 27 07:00
GMT problems with all mail-in Servers at AOL.
They seem to refuse mailconnections, giving error message 554 for no reason
at all, since our servers are not listed in any RBL etc..
We can see, that they extract from the header the original sender IP of a
mail, instead of the one from the MAIL-RELAY-SERVER, as specified in RFC.
As these senders are from ADSL IP's, AOL refuses them.
This is definitely wrong by AOL...
Does anybody else experience this Problem..