ietf-mxcomp
[Top] [All Lists]

Re: Sender-ID and last hop validation

2004-08-19 07:42:37

Graham Murray <graham(_at_)webwayone(_dot_)co(_dot_)uk> wrote:
So what happens if someone sets up a phisher friendly forwarding
system which does not perform PRA tests on incoming mail but which
generates valid PRA on the outgoing mail (ie adds a Resent-From:
and SUBMITTER)? This mail would pass all the tests but still be a
forgery. 

  Then that forwarding server would be publicly recognized as claiming
accountability for the mail.

  Alan DeKok.


<Prev in Thread] Current Thread [Next in Thread>