Topic: Too much spam coming through
I did setup iRedMail roughly a week ago and changed one of my older domains which receive a fair amount of spam to go to the new mailserver.
While the overall solution is working very well, I have the impression, that too much spam is getting through.
Sofar I received roughly 500 e-mails and around 100 are spam and not marked as such. (This is 20% of SPAM not beeing recognized, which is actually very high in my opinion).
I tracked the SPAM detection level for a fair amount of these unreported spam mails and they vary from 2.5 to 5.5
Based on the current amavis config it looks like the iRedMail defaults add the ***SPAM*** header starting from a detection level of 6.2
While it is very clear to me how I can change that level and get some of the mails marked correctly, I can and wont reduce that too much, as I want to avoid too much false-positive reports.
I think my initial question is, how can mails which contain very obvious words like suc*, dic*, blow (and versions of that in german language) pass the spam scanner with such a low score.
I ran sa-update manually in verbose mode and can confirm, that I have the latest version of the rules installed.
Any help and / or feedback would be highly appreciated