spf-discuss
[Top] [All Lists]

No use of checking RFC2822 headers

2004-09-28 19:30:00
Michel Py wrote:

This is yesterday's news. What you describe here has been the workhorse
of phishers for years.

If it is already known to you that Microsoft's Outlook does not display the
RFC 2822 mailbox address, then why the development of SPF Classic has been
stopped and there are discussions about Sender-ID, PRA and other methods
that check the RFC 2822 mailbox addresses?

However, it catches less and less marks as time passes

Do you expect that the Outlook users always look at the full message header
to see if the displayed mailbox address is really the RFC 2822 mailbox
address.

(as the masses get slowly educated).

First finish SPF Classic, then educate Microsoft, and only then talk about
Sender-ID, PRA etc.

Roger