spf-discuss
[Top] [All Lists]

[spf-discuss] Re: Using SPF op=helo for HELO Authorization

2007-01-29 17:01:59
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Alex van den Bogaerdt wrote:
On Mon, Jan 29, 2007 at 03:46:52PM -0600, Seth Goodman wrote:
asterisk      A     1.2.3.5
inbound1      A     1.2.3.6
inbound2      A     1.2.3.7
outbound1     CNAME inbound1.example.com.
outbound2     CNAME inbound2.example.com.
              MX    5 inbound1.example.com.
              MX    9 inbound2.example.com.
              TXT   "v=spf1 a:outbound1.example.com 
a:outbound2.example.com -all"

Ugly.  Please do not follow this example.  List only hosts
that are "A", not "CNAME", in your SPF records.

A(inbound1.example.com) directly results in 1.2.3.6
A(outbound1.example.com) needs an extra lookup, via CNAME.

Well, yeah, but that doesn't make it "ugly".  Following that logic, using
"mx:" in SPF records would be ugly, too, because it requires extra look-ups 
that could theoretically be avoided.

It may not be optimally efficient at run-time, but it may improve mainte- 
nance efficiency.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFFvopcwL7PKlBZWjsRAsT8AJwKjFlRAu4C7h0UcphH762LAhFjgQCglUVK
w60b/AZSizzhsYlb041YJrA=
=xOs1
-----END PGP SIGNATURE-----

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735

<Prev in Thread] Current Thread [Next in Thread>