spf-discuss
[Top] [All Lists]

Re: Hotmail preparing to check SID with spf2.0/pra only?

2005-06-21 14:40:47
On Tue, 21 Jun 2005, Hector Santos wrote:

PRA is not a magic new "entity" in the system. It is just a terminology for
checking existing headers, if any, at the payload.

True, but PRA is not a specific existing header - it is one of the
existing rfc822 headers selected according to a patented algorithm.

SPF1 means checking MFROM.

Correct.  (Except it can also check HELO.)

By stating they will not do a MFROM check, it could only mean they are
delaying the check until the payload is received. They will need to check
for the Return-Path: which is the MFROM.

No, they do not check Return-Path.  They check From:, Sender:, Reply-To:,
or one of the other rfc2822 headers selected according to their algorithm.
I don't believe Return-Path is selected by their algorithm.

They are checking a COMPLETELY DIFFERENT identity than MFROM.  Their
new identity might have some value, but it is not MFROM.

-- 
              Stuart D. Gathman <stuart(_at_)bmsi(_dot_)com>
    Business Management Systems Inc.  Phone: 703 591-0911 Fax: 703 591-6154
"Confutatis maledictis, flamis acribus addictis" - background song for
a Microsoft sponsored "Where do you want to go from here?" commercial.