spf-discuss
[Top] [All Lists]

Re: Validator Testing Request

2005-08-09 14:45:51
On Tue, 9 Aug 2005, Daniel Taylor wrote:

I would say that this is the #1 reason for us to discourage the use of
?all records. People being people, the receivers will adapt to the
perceived reality of what the modifiers mean rather that the "book"
version of what they are supposed to mean.

With AOL and other frequently forged domains publishing ?all rather than
~all or -all the real meaning of '?' goes from neutral to forged in a hurry.

That's why a decent SPF checker will apply a NEUTRAL == FAIL policy
(or other adaptive policies) only to selected domains (e.g. AOL).

If it is important to send mail to defective SPF checkers, your best
bet is to get a PASS via SMTP AUTH/VPN/whatever - not to allow mass
forgery of your domain.

-- 
              Stuart D. Gathman <stuart(_at_)bmsi(_dot_)com>
    Business Management Systems Inc.  Phone: 703 591-0911 Fax: 703 591-6154
"Confutatis maledictis, flamis acribus addictis" - background song for
a Microsoft sponsored "Where do you want to go from here?" commercial.