Just spotted this:
An interesting thing I have just found from analysing
todays logs is
that almost all are being sent to email addresses (mostly rubbish names,
e.g. message IDs) at a single client's domain name.
Does this mean you're putting messages through spamassassin regardless of
whether you'd be able to deliver them in the end? This is probably your
biggest problem. There's no point in scanning stuff you're going to
bounce anyway.
You probably need something like the following in your acl_smtp_rcpt ACL:
deny domains = +local_domains
!verify = recipient
Cheers,
Alun.
--
Alun Jones, auj(a)aber.ac.uk, 01970 622494
Gwasanaethau Gwybodaeth / Information Services
Prifysgol Aberystwyth / Aberystwyth University