spf-discuss
[Top] [All Lists]

[spf-discuss] Re: Softfail when spf-checking mails from this list, max_dns_mx=5

2007-03-14 14:32:52
Thomas Jacob wrote:

does the RFC set a limit on the number of SPF mechanism a record
may contain? Libspf2 seems be setting this to 10

The 4408 limit is 10 counting only the mechanisms (and redirect=)
causing a DNS lookup (e.g. "a", but not "ip4" or "all").  That's a
global limit (over any include: or redirect=), no per record limit.

Of course a single record containing 11 counted mechanisms is also
invalid:  "v=spf1 a a a a a a a a a a a ?all" is bad (11 As), and
x.example IN SPF "v=spf1 redirect=x.example" is also bad (INF > 10).

Frank


-------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your 
subscription, 
please go to http://v2.listbox.com/member/?list_id=735