spf-discuss
[Top] [All Lists]

small suggestions to the web site about port 25 filtering and rfc2476

2003-10-25 18:16:23
There was a discussion some time ago on this list about the problem of networks that block port 25, preventing a roaming user to access his home smtp via SASL AUTH to send mail while respecting the constraints of SPF.

Using RFC2476 and so SMTP-SASL on port 587 instead of port 25 for MUA->MTA communications looked like the right solution here, and the spf.pobox site already mentioned this on the page http://spf.pobox.com/forsysadmins.html.

Still I would suggest a couple of clarifications on web pages "objections.html" and "saslconversion.html" because the explanation there is currently a bit fuzzy (at first read you could thing MSA is a new protocol requiring an upgrade of clients).

a) In http://spf.pobox.com/objections.html, paragraph "what in a cyvercafe", I would suggest replacing:

"As SPF becomes more widely adopted, the need for blocking port 25 should go down. In the meantime, ISPs should provide authenticated login on an MSA port"

by something like:

"But the home ISPs should support connecting on port 587 as well as port 25 for outgoing authenticated mail (as per rfc2476), this solves the problem. Moreover as SPF becomes more widely adopted, the need for blocking port 25 should go down."

b) At the start of http://spf.pobox.com/saslconversion.html, I would suggest replacing this :

"In the future, we may start using MSA (RFC2476). For today, SASL (RFC2222) is the right solution. All modern mail clients support SASL."

by something like:

"For today, SASL (RFC2222) is the right solution. All modern mail clients support SASL. It is recommended to allow connecting on port 587 as well as port 25 for ESMTP/SASL (according to RFC2476), so that users can inject messages even when their hotel/cybercafe is blocking port 25".



Regards,

Loic

-------
Sender Permitted From: http://spf.pobox.com/
Archives at http://archives.listbox.com/spf-discuss/current/
Latest draft at http://spf.pobox.com/draft-mengwong-spf-02.txt
To unsubscribe, change your address, or temporarily deactivate your subscription, please go to http://v2.listbox.com/member/?listname(_at_)©#«Mo\¯HÝÜîU;±¤Ö¤Íµø?¡


<Prev in Thread] Current Thread [Next in Thread>