Sendmail's RBL is somewhat limiting. I've found a Sendmail milter called
dnsbl (http://www.five-ten-sg.com/dnsbl/) that is much more flexible in
regards using DNSBLs. You have a vastly more flexible configuration in
the BLs are applied. You can have different checks by recpient or by
domain. It can even scan the message body looking for hostnames and IPs
that are in the DNSBLs.

Dnsbl has have the load on my back-end mime-defang servers much more
reasonable even at peak loads. To date I've only has pseudo-false
positive. That was a site that got on the CBL having a misconfigured
host name on a new mail server. 

