In <ea(_dot_)5ea15f1a(_dot_)2eeefc2c(_at_)aol(_dot_)com> "Brian Barrios"
<brianantispam(_at_)aol(_dot_)com> writes:
-----Original Message-----
From: owner-spf-discuss(_at_)v2(_dot_)listbox(_dot_)com
[mailto:owner-spf-discuss(_at_)v2(_dot_)listbox(_dot_)com] On Behalf Of wayne
* There exists at least a couple of significant SPF implementations
that are already always checking the HELO domain, even when the
MAIL FROM is not null. (SpamAssassin 3.0, AOL, Hector's systems,
etc.)
AOL is not currently checking SPF records against the HELO/EHLO string.
Thanks for the update.
My understanding was based on posts last month by Carl Hutzler on the
CLEAR list that AOL was testing the HELO domain against SPF records
and what I remember Carl saying at the FTC summit. Looking at the PDF
that Carl present, it appears I misunderstood things, and that Carl
was only saying that testing would begin soon.
See:
http://www.ftc.gov/bcp/workshops/e-authentication/presentations/11-9-04_hutzler_AOL.pdf
-wayne