spf-discuss
[Top] [All Lists]

Re: [spf-discuss] Re: RPF explanation and examples

2006-11-15 15:53:30
On Wednesday 15 November 2006 20:37, Julian Mehnle wrote:
Stuart D. Gathman wrote:
On Tue, 14 Nov 2006, Jason LEWIS wrote:
Just like MAIL FROM is different than From:, RCPT TO is different than
To:.  RCPT TO means my local mail box.  Messages coming to me will
always be the same RCPT TO.  Therefore, why would I want to do some
external check other than my local rules?

You wouldn't.  However, your 3rd party imap provider won't know your
local rules.  RPF is a way to communicate your local rules to your 3rd
party imap provider.

I think this kind of public disclosure is a security problem.
Yes, one reason I abandoned my RPF suggestion.

Another way would be for the imap provider to create a web application
allowing you to login and enter your rules.

There are lots of better ways to automate this that don't imply public
disclosure of your personal policies.
And we don't need to lay down how they do it, as long as they realise they 
should.

K.J. Petrie.


-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your
subscription, please go to http://v2.listbox.com/member/?list_id=735

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735