spf-discuss
[Top] [All Lists]

Re: Time to start rejecting on neutral?

2005-05-17 05:00:02
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Scott Kitterman wrote:
Julian Mehnle wrote:
Domains whose policy gives "Neutral" results (like those without any
policy at all) don't care enough about being abused.  IOW, they are
showing their consent to be forged.

I think this ignores the many valid reasons for this:

None of the reasons you have or could have given can negate my point, ever.  
He who uses "?" in his SPF record doesn't care _enough_ about his domain 
not being abused, because that way one will never be able to detect all 
forgeries with certainty.  Of course there may be valid reasons to accept 
this issue.  It is a matter of weighing the advantages and disadvantages.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFCidzCwL7PKlBZWjsRAueIAKDw9t8OeFvTJ/2LihwCRXX+bQ3R/gCdEFRQ
4QaXy6z6IXGyxlfXpnJxw3s=
=ucDh
-----END PGP SIGNATURE-----