ietf-smtp
[Top] [All Lists]

Re: Sender's Declaration of Identity

2005-05-17 17:44:15

In 
<200505171827(_dot_)j4HIRIh6024041(_at_)turing-police(_dot_)cc(_dot_)vt(_dot_)edu>
 Valdis(_dot_)Kletnieks(_at_)vt(_dot_)edu writes:

Now if your proposed tag said:

       ID SPF=YES,YAHOO=NO,CVS=YES

*THAT* I can do something with (namely, short-circuit that auth method with
whatever I do for a 'info-not-found' for that method).

Why would you trust this?  I mean, if a phisher wants to impersonate
big-bank.com, all they would have to do is say "ID SPF=NO,YAHOO=NO,CVS=NO".


-wayne