Originally Posted by
mixture
And this is a very, very good thing. I think all residential internet connections should have port 25/465 blocked by default. Users should be forced to demonstrate technical competence and consent to automated security scanning before the ISP even considers unblocking.

I even wrote a spec for a RBL-based meshed router network to limit the amount of port-scanners and SMTP-spammers with connections, but apparently a DNS lookup on rogue machines would slow down router traffic unacceptably