spf-discuss
[Top] [All Lists]

Re: OT: SpamCop

2005-05-15 08:44:27
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Alex van den Bogaerdt wrote:
You are NOT supposed to report proper bounces [to SpamCop]!

If a virus, worm or other piece of malicious stuff sends a message,
and if a virusscanner or such detects this message is unwanted,
and if this virusscanner sends a bounce to the "sender" of this
message, is it or is it not a misdirected bounce by your definition?

If the sender identity has failed an authentication check (SPF or other 
means), the bounce is misdirected.  If no check has been performed on the 
sender identity, it _might_ be authentic, but sending a bounce would be 
grossly negligent due to the identity's unverified nature.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFCh25cwL7PKlBZWjsRAjNOAJ9PlQIg/CRBPuTkQSZ7UfvhJBOrwACfb3NV
NMzs+XbyRE14e4kSMl6CgAw=
=QYoe
-----END PGP SIGNATURE-----