1/2 of the mail connections to my companies email server are from servers trying to send emails to unknown users at our company. It's crazy. So many of them are from Korea. Anyway, I have a generated log that has all the ip addresses and domain names of the originating sender/mail server and I am currently going through the ip address and also getting range of ip addresses. I'm going to be blocking these ip addresses at the firewall, so the server won't even have to process mail trying to come from these people.
This should cut the email activity on our server in half and improve performance as well.
Would anyone be interested in this list once I am done with it
This should cut the email activity on our server in half and improve performance as well.
Would anyone be interested in this list once I am done with it