spf-discuss
[Top] [All Lists]

Re: [spf-discuss] Mail Forwarding Question

2006-02-27 12:06:12
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Stephan Golux wrote:
Hello.

I am a boutique web designer seemingly caught in SPF hell.

My client (lets call him "client.org") hosts his web site with me on a
virtual server.  Call that server "virtual.com".

My client keeps non-public email POP boxes on his isp, call it
"client-isp.com".

My client needs to get email from a party sending from their isp, call
it "sender-isp.com".

My client's public email address is "client(_at_)client(_dot_)org".

My client's private POP box is "client(_at_)client-isp(_dot_)com".

My cpanel setup forwards all email destined for 
"client(_at_)client(_dot_)org" to
"client(_at_)client-isp(_dot_)com".  But the outside world doesn't know that.

This is where you have control.
What needs to be done here is simply update the "MAIL FROM:" to be your
domain. You can use SRS, delayed acceptance, or a number of other
techniques to handle bounces, but this is the essential step.

Leave the "From:" header alone. What you are then saying is that
"forwarder(_at_)virtual(_dot_)com" is sending mail on behalf of
"person(_at_)sender-isp(_dot_)com" to "client(_at_)client-isp(_dot_)com".

Publish your own SPF record to protect your domain from being misused by
third parties to provide yourself and your client with some extra peace
of mind.

This closes the validation loop and is how SPF is intended to work with
services such as yours. When used in this way it can provide end-to-end
validation of the email chain.

- --
Daniel Taylor
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFEA01k8/QSptFdBtURAgr4AJ42XD7Zo+Qd/6CQuRzNrLAlsmkepACdFo9v
+8RM064ZAfAgtaUgi4YcGeU=
=Axvs
-----END PGP SIGNATURE-----

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to 
http://v2.listbox.com/member/?listname=spf-discuss(_at_)v2(_dot_)listbox(_dot_)com