spf-discuss
[Top] [All Lists]

[spf-discuss] Re: Another test case for the test suite...

2007-01-09 18:26:28
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Alex van den Bogaerdt wrote:
On Wed, Jan 10, 2007 at 12:43:24AM +0000, Julian Mehnle wrote:
| * Fixed a very minor bug where a "TempError" result would
| incorrectly be returned in the very rare case when the SPF-type
| look-up succeeded but returned 0 records, and the following TXT-type
| look-up errored or timed out.  Now a "None" result is correctly
| returned in that case as demanded by RFC 4408.

While I'm sure this is what the spec requires, I'm no longer sure this
is a sensible behavior.  Which means that there is probably a bug in
the spec.

Any comments?

"None" should be returned when there are no records published, or when
the domain does not exist. (RFC 4408 section 2.5.1)

If an SPF-type lookup succeeds, clearly the domain does exist. This
means there have to be zero or more resource records for the TXT-type
lookup. Any other answer is not acceptable IMHO.

But the TXT-type lookup could accidentally fail due to resource constraints 
on the authoritative name server or on the resolver.

If the TXT-type lookup fails, shouldn't a PermError or TempError be
returned?

Exactly my thought.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQFFpEATwL7PKlBZWjsRAioxAKD/VxVIwtgAfRVEmUb4jOxYKxeqXQCg05I7
yhK9XLZDCWqsGUInCAAEKd8=
=sYh9
-----END PGP SIGNATURE-----

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735