spf-discuss
[Top] [All Lists]

Re: What else to go into the pot?

2004-07-08 16:15:26

Current RFC proposal has nothing about maximum SPF record length.
I'm unaware if it 65000 (TXT DNS limit), 1400 or 512.

Without activating EDSNO to negotiate longer UDP packets (and many DNS servers do not support EDNSO), max DNS total packet size is 512 bytes. Above that, the querier gets a TC bit in the truncated response packet, and should re-submit the query over TCP, at which point tons of firewalls will block the TCP connection to port 53.

SPF will look pretty stupid and self-aborting if it can't come up with a way to stay within 512 bytes.

Len


_____________________________________________________________________
http://IMGate.MEIway.com : free anti-spam gateway, runs on 1000's of sites