spf-discuss
[Top] [All Lists]

Re: Long SPF records cut short?

2004-01-26 17:56:18
--On Monday, January 26, 2004 6:40 PM -0600 wayne <wayne(_at_)midwestcs(_dot_)com> wrote:

In <20040127003812(_dot_)GZ7601(_at_)dumbo(_dot_)pobox(_dot_)com> Meng Weng Wong
<mengwong(_at_)dumbo(_dot_)pobox(_dot_)com> writes:

| Are you runing djbdns?

it went over the limit and you have to do TCP mode:


Notice that there are a bunch of strings returned, each of which is
127 bytes long.  If I recall correctly, djbdns doesn't do TCP mode,
even if the bind tried to use it.


I have axfr-dns listening to the same address, so TCP queries are supported. But Yikes, I don't want to go TCP for SPF.

To the persons suggesting using include: statements and/or ptr: or mx:, would this be what you had in mind?

@ORIGIN ticketmaster.com.
reply IN TXT "v=spf1 ptr:crm.tmcs.net include:reply._spf.ticketmaster.com -all"

@ORIGIN _spf.ticketmaster.com.
reply IN TXT "v=spf1 a:lax1bmx1.tmcs.net a:lax1bmx2.tmcs.net a:chi1bmx1.tmcs.net a:chi1bmx2.tmcs.net -all"

I don't want to do "ptr:tmcs.net" because there are tmcs.net hosts that should NEVER send emails from reply.ticketmaster.com.

That should do it, I think...? Thanks for the tips.

---
"The avalanche has already begun. It is too late for the pebbles to vote."
-- Kosh

-------
Sender Permitted From: http://spf.pobox.com/
Archives at http://archives.listbox.com/spf-discuss/current/
Latest draft at http://spf.pobox.com/draft-mengwong-spf-02.9.4.txt
Wiki: 
http://spfwiki.infinitepenguins.net/pmwiki.php/SenderPermittedFrom/HomePage
To unsubscribe, change your address, or temporarily deactivate your subscription, please go to http://v2.listbox.com/member/?listname(_at_)©#«Mo\¯HÝÜîU;±¤Ö¤Íµø?¡