spf-discuss
[Top] [All Lists]

Re: Possible SPF machine-domain loophole???

2004-02-24 09:20:57
In <20040224161252(_dot_)GV27676(_at_)dumbo(_dot_)pobox(_dot_)com> Meng Weng 
Wong <mengwong(_at_)dumbo(_dot_)pobox(_dot_)com> writes:

| > I think it my be useful to do SPF checking on the HELO string, and
| > reject the connection if the SPF check fails, but let it pass
| > otherwise.
| 
| That was my idea too. I have no problem with bad HELO strings from 

I am very tempted to put this into the RFC but maybe it better belongs
in a BCP or in the website "how-to" document.  What do people think?

My knee-jerk reaction is that it would be a good thing to add to the
RFC.  I reserve the right to flip-flop though. ;->


Either way, I need to do a paper on "what the RFC doesn't tell you".

Covering trusted-forwarder, the deployment strategy, setup instructions,
per-MX configuration, etc.

And best-guess...

-wayne