Reseller Hosting, Shared Hosting, Dedicated Hosting by Vortech Inc.

Go Back   Reseller Hosting, Shared Hosting, Dedicated Hosting by Vortech Inc. > >>Network Information & News and Announcements > News and Announcements
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

News and Announcements This is where you can read announcements regarding Vortech Inc.

Reply
 
Thread Tools Display Modes
  #31  
Old 02-19-2004, 09:43 AM
nelsonke's Avatar
nelsonke nelsonke is offline
Telcom consultant
Vortech Inc. Customer
 
Location: Plano Texas
Thanks Matt and Vortech. I believe virus blocking is very different from SPAM. One man's spam is anothers information, but a virus is pretty much a virus. The spread of a virus can cost millioins. Thanks to Vortech for doing what you can to stamp them out.

I don't think notices are necessary, and in fact with all the email spoofing, they seem to create more confusion and support issues than are of help.

Question, is it now running on all the mail serviers? Thanks again to Matt and Vortech. Good job!
Reply With Quote
  #32  
Old 02-19-2004, 10:11 AM
admin's Avatar
admin admin is offline
Vortech Inc. Owner
Owner
 
Location: Orlando FL
Send a message via ICQ to admin
Yes its running on all H-Sphere mail servers and Vortech mail servers. Not in cpanel as its much hard to get in there..
__________________
Brad Pugh
http://www.vortechhosting.com
------

Local System/Network Monitor
http://nagios.hsphere.cc/
Login:guest Pass:guest
XML FEED http://nagios.hsphere.cc/feed.xml
------

My Other Life:
Reply With Quote
  #33  
Old 02-19-2004, 02:22 PM
Bladesnitz
Guest
 
Yep... ClamAV is the virus scanner, so all viruses it can find, it will reject. EICAR included (Its what I used to test the darn thing).
Reply With Quote
  #34  
Old 02-19-2004, 03:09 PM
bootNumlock's Avatar
bootNumlock bootNumlock is offline
Brangwyn fan club member
Vortech Inc. Customer
 
Location: chicago
are you sure it is scanning on all mail servers?? i just go a virus email on my chicagorush.com account... i think that is mail4....
__________________
boot numlock
Reply With Quote
  #35  
Old 02-19-2004, 05:54 PM
mfennell's Avatar
mfennell mfennell is offline
Lost in space
Vortech Inc. Customer
 
Location: The armpit of California - Fresno
Send a message via Yahoo to mfennell
Great job Matt.

I have one major problem though.

When was a notification going out about this change?

Its a pretty major change and should have at least gone out through the mailing list. Especially since it was deemed that not only will the attachment get blocked (which is great!!) but the actual message will to. And even worse that there isn't even a notification that the mail was dropped, either to the person who sent it or the person who should have recieved it.

This is unexceptable we need some form of notification!
Reply With Quote
  #36  
Old 02-19-2004, 07:11 PM
Bladesnitz
Guest
 
mfennell, the message is now rejected. This isn't even a major change, considering we were blocking 99% of viruses (all but mydoom) by denying all executable attachments. Now we block 100% of viruses, and allow executables through. Not much change there.

The reason you have seen a few slip past is becuase the clamd daemon dies every so often for no particular reason. This doesn't affect mail going through, but it will let a few viruses slip through. It's now cronned to restarted and I'm working on a script that will monitor it.
Reply With Quote
  #37  
Old 02-20-2004, 01:26 AM
mfennell's Avatar
mfennell mfennell is offline
Lost in space
Vortech Inc. Customer
 
Location: The armpit of California - Fresno
Send a message via Yahoo to mfennell
Quote:
Originally Posted by Bladesnitz
mfennell, the message is now rejected. This isn't even a major change, considering we were blocking 99% of viruses (all but mydoom) by denying all executable attachments. Now we block 100% of viruses, and allow executables through. Not much change there.

Thank you,

I do have to disagree about it being a major change. Before (and again now) we were at least aware there was a problem with an email.
Reply With Quote
  #38  
Old 02-20-2004, 10:28 AM
Bladesnitz
Guest
 
How are you not aware now? They aren't silently dropped, I've said that three or four times now in this post. If its a virus, its REJECTED. Which means that the MTA sending it will get a little message, and that MTA is responsible for generating a bounce back to the sender. So how is it you don't know? If someone mistypes an email address, you don't get notification either... So basically, if an email doesn't follow the rules, you don't know about it. The person sending it does.
Reply With Quote
  #39  
Old 02-20-2004, 11:36 AM
mfennell's Avatar
mfennell mfennell is offline
Lost in space
Vortech Inc. Customer
 
Location: The armpit of California - Fresno
Send a message via Yahoo to mfennell
Didn't say I wasn't aware now.

I said that I was aware before and again now.
Reply With Quote
  #40  
Old 02-20-2004, 01:09 PM
nabsUK nabsUK is offline
Vortech Inc. Customer
Vortech Inc. Customer
 
Thumbs up Good job Matt

Thank you.
Reply With Quote
  #41  
Old 02-20-2004, 02:02 PM
mresell's Avatar
mresell mresell is offline
ePerson
Vortech Inc. Customer
 
Location: Around the \bin
I don't really have issues with viruses(knock on wood), however, I think this is great. I like the fact that the sender is notified w/ reject right away. That is who should be notified.
Reply With Quote
  #42  
Old 02-20-2004, 08:10 PM
nelsonke's Avatar
nelsonke nelsonke is offline
Telcom consultant
Vortech Inc. Customer
 
Location: Plano Texas
Here here. Good job guys.
Reply With Quote
  #43  
Old 02-25-2004, 10:12 PM
Silverbug's Avatar
Silverbug Silverbug is offline
Custom Built Solutions
Vortech Inc. Customer
 
Location: AK, New Zealand
Send a message via ICQ to Silverbug Send a message via MSN to Silverbug Send a message via Skype to Silverbug
Question: What happends if we receive an email via vortech and it still has a virus in it? would you like us to report it somewhere or is it just that the virus defs on the mail server arnt as up to date?
__________________
Paul Foley
Sniper Systems Ltd

Reply With Quote
  #44  
Old 02-25-2004, 10:50 PM
admin's Avatar
admin admin is offline
Vortech Inc. Owner
Owner
 
Location: Orlando FL
Send a message via ICQ to admin
Silverbug, you can just post it here, but not a lot we can do unless clamav updates to know about that virus. Also remember if a virus is in a zip thats in zip it will pass because its 2 zips deep. But I have not seen any virus that zips its zip..
__________________
Brad Pugh
http://www.vortechhosting.com
------

Local System/Network Monitor
http://nagios.hsphere.cc/
Login:guest Pass:guest
XML FEED http://nagios.hsphere.cc/feed.xml
------

My Other Life:
Reply With Quote
  #45  
Old 02-25-2004, 11:39 PM
Silverbug's Avatar
Silverbug Silverbug is offline
Custom Built Solutions
Vortech Inc. Customer
 
Location: AK, New Zealand
Send a message via ICQ to Silverbug Send a message via MSN to Silverbug Send a message via Skype to Silverbug
yeah thought that might be the case. And to be hosnest i dont even know anyone who puts zips in zips lol
__________________
Paul Foley
Sniper Systems Ltd

Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Bedtimes Virus dpyers Chit Chat Public 2 10-23-2005 06:35 AM
Virus scanning for e-mail gconspiracy H-Sphere Pre-Sales 7 12-27-2003 12:11 AM


All times are GMT -5. The time now is 05:38 AM.


Powered by vBulletin Version 3.5.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Vortech Inc. ©2005
Page generated in 0.89284 seconds with 19 queries
[Output: 109.56 Kb. compressed to 100.72 Kb. by saving 8.85 Kb. (8.08%)]