ietf-asrg
[Top] [All Lists]

Re: [Asrg] 0. General - anti-harvesting (was Inquiry about CallerID Verification)

2003-11-30 01:43:35

----- Original Message ----- 
From: "Yakov Shafranovich" <research(_at_)solidmatrix(_dot_)com>
To: "ASRG" <asrg(_at_)ietf(_dot_)org>

What happens if this is a legit user? You will end up sending an email
to him since at the DATA command, the MTA will accept the message? So
therefore, for those MTAs which answer 250 to all RCPT TOs and do
validation after the DATA command, your method of verification will
result in an extra email message to the user which itself can be
considered spam by the user (same argument as the C/R business).

arrrrrrrrrrrrrrrrrrrgh.  Good point.   I having looked into yet. Busy
writing mail.

I'll explore it.    Is YAHOO around?????


What I would like to narrow down is what purpose does this proposal
address? What exact forgery does it solve?

Valid Return Path.

The RFC says that all mail must be returnable (except for NULL address).

---
Hector Santos
WINSERVER "Wildcat! Interactive Net Server"
support: http://www.winserver.com
sales: http://www.santronics.com



_______________________________________________
Asrg mailing list
Asrg(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/asrg



<Prev in Thread] Current Thread [Next in Thread>