Anti-spam Systems and Techniques

From Computing and Software Wiki

Jump to: navigation, search

Now a days the email system has become the most significant technology and a useful tool for human beings in the world. In the US alone, 88% of adult users have email accounts and half of email users use email systems almost every day. However, like growing email users, spam, scam, and fishing emails are increasing. Lots of email providers, such as Gmail, Hotmail, have been making an effort to protect their users from spam, scam, and fishing emails. Accordingly, I’ll discuss some new techniques for anti-spam systems and how to improve the anti-spam system on the server through SPF (Sender Policy Framework), SenderID, Domain Keys, and DKIM(Domain Key Identified Mail).

Contents

Time to replace SMTP?

SMTP is a simple and text based protocol using port 25. It was formally defined in RFC 821 as improved by RFC 1123, but today, ESMTP defined in RFC 2821 is widely used. SMTP has many security problems but SMTP servers became more secure as users began writing their own servers such as Microsoft Exchange Servers, Qmail and Postfix. However, SMTP stays at the core of current junk email problems. Moreover, junk email is highly approaching 90% of all email traffic on the internet and like growing email users, spam, scam, and fishing emails are increasing.

Anti-spam technique through Procmail

Procmail is one of the email filtering softwares and Mail Delivery Agents (MDA) widely used on Unix and Linux systems. It is placed between the Mail Transfer Agent (MTA) like Sendmail and users mail boxes. In order to use procmail, the procmailrc configuration file of procmail is needed to setup. The procmailrc is like below the picture.

Image:Procmailrc.jpg

New Anti-spam Systems

SPF (Sender Policy Framework)

Sender Policy Framework (SPF) is the one of the new anti-spam technology and open standard to prevent sender address forgery. SMTP allows to send and receive emails any of domains so it is very easy to send spams through SMTP servers. SPF allows to use TXT record in the DNS server. For example, when inbound server receives an email, checking SPF record and if it is from unauthorized machine, it rejects the email.

Image:Spf.jpg

The records are laid out like this

Image:Dns.jpg

SIDF (Sender ID Framework)

SIDF was designed by Microsoft. It certifies sender addresses through SPF record and uses very similar methods name syntax as SPF. However, SIDF is not the latest version of SPF. For more information, click this link

DKIM (DomainKeys Identified Mail)

The first version of DKIM was combined DomainKeys designed by Yahoo and Identified Internet Mail by Cisco. Today, many email providers such as AOL, Yahoo, Cisco, Microsoft, PGP, IBM, and Gmail collaborate to develop more enhanced version of DKIM. DKIM offers methods for validating a domain name identity that is associated with a message through encoded DKIM signature header. It validates email by DKIM signature header. The public key stored in DNS.

Image:Email_header.jpg

Anti-spam System and Techniques

There are many effective anti-spam solutions in the world. But still it is impossible to block 100% of spam because of the inefficient sendmail system. Still, most of email users suffer from unwanted emails. As described above, we can build better and more efficient sendmail systems through new anti-spam techniques so that users don’t need any spam filtering tools.

  • Step One: Insert TXT record (SPF and Domain Keys) into DNS zone file
  • Step Two: Set email server to validate emails have valid headers through TXT record of DNS server (Sender's DNS)
  • Step Three: It is good idea to use both SPF, DKIM and spam filters

See Also

External links

References

--Leehw 11:51, 8 December 2007 (EST)

Personal tools