spf-discuss
[Top] [All Lists]

Re: [spf-discuss] solving the forwarding problem

2005-09-11 15:21:21
On Sun, 11 Sep 2005, Theo Schlossnagle wrote:

Sorry you talk abou the receiver that uses the alias and a receiver who 
controls their inbound mail setup as the same person.  They hardly ever 
are.  One is a user and the other is a mail exchange administrator.  One 
does not have control over what the other does.

A requirement for an mail admin to reject on SPF, is that he identify
*all* points of inbound email.  If he does not provide his users with
a way to inform him of aliases the users has authorized (or said user
has not made use of the mechanism), then he (the mail admin) cannot correctly
reject on SPF FAIL for such users.

This is the mirror of publishing SPF.  You cannot correctly publish
an SPF record with -all, unless you identify *all* points of oubound mail.
Checking SPF is not different.

This means that for most ISPs, where there is not a direct hand-holding
relationship between mail admin and users, strick SPF checking must
be opt-in by user.

-- 
              Stuart D. Gathman <stuart(_at_)bmsi(_dot_)com>
    Business Management Systems Inc.  Phone: 703 591-0911 Fax: 703 591-6154
"Confutatis maledictis, flamis acribus addictis" - background song for
a Microsoft sponsored "Where do you want to go from here?" commercial.

-------
Sender Policy Framework: http://spf.pobox.com/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to 
http://v2.listbox.com/member/?listname=spf-discuss(_at_)v2(_dot_)listbox(_dot_)com