Re: BCP on dealing with hijacked machines
Yakov Shafranovich <[email protected]> Fri, 05 Mar 2004 13:36:19 -0500
| Newsgroups | gmane.ietf.asrg.bcp |
|---|---|
| Organization | SolidMatrix Technologies, Inc. |
| Message-ID | <[email protected]> |
Terry wrote: > On Sunday, February 29, 2004 at 4:10 AM, Yakov wrote: > >>This message is from the SMTP VERIFY list. Does anyone want to volunteer >>to help with drafting a BCP for this, can provide real-life deployment >>experience, and perhaps provide information regarding the effectiveness >>of this? > > >>Yakov > > > I haven't had any experience with this, but if people will provide me > with information, I'll compile it and come up with a rough draft. > The basic concept is that ISPs should monitor the volume of outgoing email traffic for each account. Whenever, the traffic spikes too much, the email should be queied or rate limited, and the customer will get an email or phone call saying that they should contact the ISP. If we can write up this basic scenario, then we can work from there on the minute technical details like what kind of traffic is monitored, privacy issues, etc. If anyone else wants to contribute, speak up :) Yakov