spf-discuss
[Top] [All Lists]

Re: RFC (request for comments): Summary of SenderID/PRA concerns

2005-06-24 15:37:50
On Fri, 24 Jun 2005, Hector Santos wrote:

If the following 2822 header is present:

Return-Path: ABC
Resent-Sender: DEF
From: XYZ

The PRA would be DEF.   Why would this DEF display be prominent?  Should it

I would hope, since it is Microsoft's baby, that they would at least
display the PRA in their own mail clients (hotmail,Outlook).

be displayed along with XYZ which would be the normal FROM: field displayed?

If the PRA is not displayed to the end-user, then it is useless for preventing 
phishing.

Validating MAIL FROM is superior to PRA in every aspect except this:
it is not displayed to the end user.

-- 
              Stuart D. Gathman <stuart(_at_)bmsi(_dot_)com>
    Business Management Systems Inc.  Phone: 703 591-0911 Fax: 703 591-6154
"Confutatis maledictis, flamis acribus addictis" - background song for
a Microsoft sponsored "Where do you want to go from here?" commercial.