Can LANGuardian identify a possible spammer on our network?

  • 1
  • Question
  • Updated 8 years ago
  • Answered
Can LANGuardian identify a possible spammer on our network?
Photo of NetFort

NetFort

  • 182 Posts
  • 2 Reply Likes

Posted 8 years ago

  • 1
Photo of NetFort

NetFort

  • 182 Posts
  • 2 Reply Likes
Official Response
0

The LANGuardian has a number of mechanisms which will help you identify possible spammers on your network.

*

The Security aspect of the system can be checked for the presence of an event dns_mx lookups, possible SPAM this event will be triggered when a system is detecting large number of DNS lookups within a short space of time. This is a good indicator of SPAM activity if the host is not a mailserver.
*

If a host is found to be performing Netscans on port 25 (SMTP) then this also indicates a large increase in mail traffic.
*

Running a Top Clients report with port 25 set in the Servers Port field will indicate the most active host accessing mail servers.