From: Anthony Howe
Date: 2006-10-01 05:03:05 -0400
Subject: Re: Milter-sender and access file question

Rose, Bobby wrote:
> Is it possible to skip sender verification on a specific mail from to a
> specific rcpt to?  I'm not sure if the NEXT action would do this or not
> based on the examples on the man page.

No. There currently does NOT exist any means to black/white list combos 
like sender/recipient, sender/client, sender/recipient/client, etc.

The NEXT action is the opposite of SKIP and intended for pattern lists 
where none of the patterns match and so you want to resume the access 
lookup following the pattern list entry.

For example:

milter-sender-connect:10.0		OK
milter-sender-connect:10.0.1		[]REJECT NEXT

I can white list all of, except a small subnet on First sendmail has no CIDR support, but using a pattern 
list I can specify a LHS that acts as a selector for the general range 
and then a RHS pattern list with a CIDR for a more precise check. So if 
a host connects, it should be white listed, but the 10.0.1 
would match, but the CIDR pattern would not. NEXT action resumes the 
access lookup so that I'll find the 10.0 white list entry.

The above could have been written also like:

milter-sender-connect:10.0		[]REJECT OK

