spf-discuss
[Top] [All Lists]

RE: Distrowatch article on SPF

2004-07-30 11:17:48
Microsoft is supposed to put its revised patent and
licensing position forward on August 2, 2004. 

Many folks have expressed concern. Microsoft is apparently
aware of these concerns according to comments made on the
IETF Marid mailing list. 

All we can do is wait to see how Microsoft responds. 

The bigger issue is:

* Is Sender-ID the best "mousetrap," if the IETF elects to
go with one standard.

* Given the apparent advantages and disadvantages of the
competing standards for receivers, the Unified SPF theory
earlier proposed by Meng seems to make the most sense.

How? SPF as expressed in the MARID protocol can become the
framework for senders, with receivers then having the
option of using SPF/SRS, CSV, etc., or Sender ID/Submitter to
check one or more aspects of DNS text identification.

Given this, the questions become:

* What steps do existing implementations need to take to
get into compliance with the MARID protocol?

* Is it better to treat the PRA Algorithm as an extension
to RFC 2822, which is the case for Submitter and put
forward a protocol?

* Is it best to write a protocol which then allows
receivers to carry out a variety of tests, based on their
preferred choice, providing that senders can write one
policy framework which meets all of these potential tests.

John Glube
Toronto, Canada
 
The FTC Calls For Sender Authentication
http://www.learnsteps4profit.com

 

---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.725 / Virus Database: 480 - Release Date: 19/07/2004
 


<Prev in Thread] Current Thread [Next in Thread>