ietf-asrg
[Top] [All Lists]

Re: [Asrg] RFC5451 Re: who gets the report, was We really don't need

2010-02-09 05:52:42


--On 8 February 2010 15:14:39 -0500 Chris Lewis <clewis(_at_)nortel(_dot_)com> 
wrote:

Are you talking about an internal destination for spam reports (e.g.
your IT group), or an external one (e.g. abuse(_at_)domain)?

Either.  If you have an AR header you trust, there's no reason to refuse
it giving you an external destination.  Question is, how do we tell it's
trusted, or do we care (especially with a site that's not 5451 aware)?

Yes, we care. Most servers aren't going to add this information. Most of the time, it will be provided by the spammer. If clients are going to do something with the information, it must be trusted.

Could the MDA add a DKIM signature for the authentication results header?

--
Ian Eiloart
IT Services, University of Sussex
01273-873148 x3148
For new support requests, see http://www.sussex.ac.uk/its/help/
_______________________________________________
Asrg mailing list
Asrg(_at_)irtf(_dot_)org
http://www.irtf.org/mailman/listinfo/asrg

<Prev in Thread] Current Thread [Next in Thread>