The
Mail Filter
 
XWall beta from 2012-04-13

 

This version is technically speaking a beta version,
but is stable enough to so that it can be used in a production environment.

To download the latest 32bit beta update click here
To download the latest 64bit beta update click here

If you want a notification when the next beta is released then click here
 


Changes since the last full release

v3.47i 2012-04-13

  • New: Prevent test for On-Access scanner at startup (VirusScannerOnAccessStartupCheck=False)
  • Chg: VerboseSLS shows more information
  • Chg: IPv6 DNS query using ALL and fall back to A/AAAA for server that don't support it
  • Chg: Examine the IP addresses in the message header ignored the Backup MX
  • Fix: Unnecessary restart when timezone changes
  • Fix: Very large attachment filled with ASCII zeros takes a long time to decode

v3.47h 2012-02-29

  • Fix: Remove subject tag for outbound messages for html format with a script
  • Fix: Cache of domain based SLS/RBL
  • Chg: Heuristic value for tags in a html page

v3.47g 2012-02-16

  • Fix: Heuristic failed to proper scan HTML source
  • New: Support status query using Nagios
  • Chg: Senderbase and Country skip the backup MX

v3.47f 2012-01-30

  • Fix: SMIME certificates with an e-mail only in subjectAltName
  • Fix: On-Access virus scanning with file extensions enabled resulted in a false positive when the extension was very long with non-ASCII characters
  • Chg: SMTP EHLO/HELO is equal to RSET
  • Chg: Removed announcement for NTLM AUTH for SMTP clients
  • Chg: No longer checking a Backup MX for SLS/RBL and other methods during the SMTP session

v3.47e 2011-12-05

  • New: The Format column in the statistic file indicates a IPv6 connection
  • New: Enhanced TLS peer certificate verification (OutboundSMTPTLSVerify=True)
  • New: Support for Online Certificate Status Protocol (OCSP)
  • New: Compiled with ASLR (address space randomization) and NX (no execution)
  • Chg: OpenSSL updated to v1.0.0e
  • Fix: Binding to a IPv6 address erroneously enabled inbound IPv6
  • Fix: MBAdmin crashed in Options->Global Exclude
  • Fix: Message with a FromStaticRoute needs an exemption from connection cache
  • Fix: Message-id was not unique when created within one tick

v3.47d 2011-10-18

  • New: Connection cache to Exchange (OutboundExchConnectionCache=True)
  • New: Global exclusion for TLS required sender (InboundExclTLSRequired=True)
  • New: Verify a certificate using the CommonName and the subjectAltName
  • Chg: Auto IP blocking double checks for the IP of a backup MX
  • Fix: Checking for an exploit in a zip file
  • Fix: Omit recipient check for an echo address
  • Fix: Reject internal From: address during the SMTP session was not working
  • Fix: Inbound connection manager stopped when out of resources

v3.47b 2011-09-03

  • New: Zip archive with an unsupported compression method is handled
    like a password protected zip archive
  • Fix: Connection manager shut down when system goes out of resources
  • Fix: Faster accepting inbound connections
  • Fix: E-Mail query against Exchange in ISP Edition

v3.47a 2011-07-14

  • New: Detection of phishing messages (Options->Spam->Phishing)
  • New: Heuristic scans for word with upper chars like ThereAreHugeDiscountOnTheseDrugs
  • Fix: Optionally don't enforce a FQDN after EHLO command