spf-discuss
[Top] [All Lists]

Re: SPFv1 record failure cases

2005-07-23 05:18:31
In 
<17119(_dot_)62263(_dot_)317656(_dot_)613631(_at_)saint(_dot_)heaven(_dot_)net> 
"Dick St.Peters" <stpeters(_at_)NetHeaven(_dot_)com> writes:

I run sendmail's sid-milter.  It does both SPF "classic" checks and
Sender-ID checks.  By default it uses v=spf1 records only, for both
checks, and I ran it that way for weeks.

From what I recall from looking at the milter from sendmail, it is
broken in many ways.  Somehow it doesn't surprise me that it doesn't
get this right.


It logs the result of each check, so I have thousands of log entries
reporting both checks.  1000 messages for which SPF or Sender-ID
yielded a definitive pass or fail would typically include only about
10-20 for which they disagreed.  When they did, the one saying "pass"
was nearly always right.

Can you give some more details here?  When/why were the SPF and SID
checks different?  Which one was right most of the time?



-wayne