spf-discuss
[Top] [All Lists]

RFC (request for comments): Summary of SenderID/PRA concerns

2005-06-24 12:56:06
I think it would help if a consolidated list of concerns was well as
benefits in regards to SenderID/PRA should be organized.  If there is a list
already, please point it out.

I can list my concerns and benefits.  Please feel free to confirm, reject,
correct or add your own. That is the goal to fine tune a list of issues or
concerns.  If you add, please just itemize it with generalized sentences.
If you disagree with one or more of the list below, please explain why.

Concerns:

- No clear benefits to PRA 2822 extraction is shown,
- No logical reason for PRA algorithm explained
- Higher Payload Bandwidth Potential
- Rejects No Header Payload due to no PRA extraction
- Does not use 2821.Mail From
- Over 80% of transactions, 2822.PRA = 2821.Mail From
- Easily spoofed
- Provides no incentive for adoption
- Provides no incentive for spammer adoption (status quo)
- Does not solve phishing
- Ignores HELO spoofs

Benefits:

- Microsoft Support for SPF?

Others?

--
Hector Santos, Santronics Software, Inc.
http://www.santronics.com