spf-discuss
[Top] [All Lists]

Re: [spf-discuss] SPF queries by a newbie

2006-11-13 17:23:20
Hi Stuart, Thanks for your reply

Stuart D. Gathman elucidated on 13/11/06 17:03:
On Mon, 13 Nov 2006, Jon Grant wrote:

I'd also like to Reject 554 connections to my MX server from IP
addresses which do not have reverse DNS set up on them, and connections
which say HELO with a different domain name to their Reverse DNS.

Amen to strict HELO.

However, please do not reject *solely* based on lack of reverse DNS.  
Broadband
ISPs are a monopoly in many areas, and small domains owners (less that class 
C)
have no way to force the ISP to publish or delegate a proper PTR.  Domain
owners can always use a proper HELO name, and this is clear and sufficient
proof that the MTA is managed by the domain owner.

can't a spammer just put mail.gmail.com in the HELO field though then?
Maybe I didn't understand your message. I do see the problem for people
who cant setup reverse DNS. I do think the IP should have something
though, even if it is dsl-1-2-3-5.host.com

Kind regards
Jon

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735