spf-discuss
[Top] [All Lists]

Re: Extending SPF to IN-ADDR.ARPA space

2004-03-23 20:31:29
please see the MTAMark and Selective Sender proposals posted at
http://asrg.sp.am/ under "works in progress" as well as the LMAP Family
Tree at http://spf.pobox.com/marid/index.html

On Tue, Mar 23, 2004 at 08:55:38PM -0500, Bob Poortinga wrote:
| [I did a brief survey of the archives and couldn't any related ]
| [discussions.  Pardon me if this has been discussed before.    ]
| 
| SPF in its current form implements a method for domain name administrators
| to express policy through TXT records in the domain name space.  SPF
| could reasonably be extended to express policy for IP space administrators
| through TXT records in the IN-ADDR.ARPA name space, e.g:
| 
|    1.168.192.in-addr.arpa.    IN   TXT "v=spf1 -all"
| 
| would mean that *no* hosts in 192.168.1.0/24 are authorized to initiate SMTP
| sessions.  Of course, not all SPF modifiers would be applicable to TXT
| records in IN-ADDR.ARPA and some additional modifiers may be necessary
| to provide complete policy expression, but I believe that this would be an
| excellent method for NSPs and ISPs to publish IP space policy.