spf-discuss
[Top] [All Lists]

[spf-discuss] Re: SPF w/SRS

2007-01-30 15:56:41
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Dan_Mitton(_at_)notes(_dot_)ymp(_dot_)gov wrote:
Ok, that makes sense to me.  However, there are a few examples in the
documentation that talk about doing checks in the exim acl_smtp_data acl
for the 'From:' header.  I think someone needs to do some documentation
cleanup.

From the Mail::SPF::Query documentation in the examples/exim-acl :

spf_from_acl:

    # Check header From:

    warn     set acl_m8  = ${address:$h_from:}
    deny     !acl        = spf_check
    warn     message     = Received-SPF: $acl_m8 ($acl_m7)
    accept

In the Exim documentation in the doc/experimental-spec.txt :

You can now run SPF checks in incoming SMTP by using the "spf"
ACL condition  in either  the MAIL,  RCPT or  DATA ACLs.

OMG, you're right!  Unless I misunderstand Exim's configuration syntax (I 
don't have a clue about Exim), this is a gross mistake!

I will remove the relevant part from M:S:Q's examples/exim-acl for the 
upcoming 2.000 release (which will still take another month or two, as it 
will be a complete rewrite as a wrapper around the new Mail::SPF).

Can someone please contact the Exim people and tell them that SPF shouldn't 
be used in "DATA ACLs"?

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFFv8yvwL7PKlBZWjsRAoBRAJ4qwpKqt7cLKR6HCPS0VMCWGAMuWgCfRqux
PL/qF3iSWUqUzzORsgttmWI=
=lOmg
-----END PGP SIGNATURE-----

-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735

<Prev in Thread] Current Thread [Next in Thread>