spf-discuss
[Top] [All Lists]

[spf-discuss] Re: RPF explanation and examples

2006-11-15 13:38:54
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Stuart D. Gathman wrote:
On Tue, 14 Nov 2006, Jason LEWIS wrote:
Just like MAIL FROM is different than From:, RCPT TO is different than
To:.  RCPT TO means my local mail box.  Messages coming to me will
always be the same RCPT TO.  Therefore, why would I want to do some
external check other than my local rules?

You wouldn't.  However, your 3rd party imap provider won't know your
local rules.  RPF is a way to communicate your local rules to your 3rd
party imap provider.

I think this kind of public disclosure is a security problem.

Another way would be for the imap provider to create a web application
allowing you to login and enter your rules.

There are lots of better ways to automate this that don't imply public 
disclosure of your personal policies.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQFFW3p8wL7PKlBZWjsRArPuAJ4up0gytsy/fEvQMkYYcdr6yeNKiQCcCOSm
lix82Z5cSOvRLLsfbJ4/Kps=
=uJym
-----END PGP SIGNATURE-----

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735