Robert Barclay [robert(_dot_)barclay(_at_)returnpath(_dot_)net] wrote:
[...] the advice for ESPs says specifically not to rely on the Sender
header to pass because of the risk of implementations that only check
the From:
This is nonsense. It is like telling people not to rely on traffic lights
because some might potentially be broken.
If some implementations only check the "From:" header, the right thing to
do is fixing those implementations, not generally ignoring the "Sender:"
header.
Are those PRA guys really that confused?