> http://tools.ietf.org/html/draft-moonesamy-senderid-spf-historic-00
> I am not suggesting to remove from ASSP (specially since Strict SPF > Processing Regular Expression has been helpful for us to identify > spoofed mails), however, I though everyone ought to know and maybe > adjust some of your settings. First of all, that's a "draft" and nothing says it will be approved; and in any case, if and when SPF will be retired the ASSP may be changed or... you may just disable the SPF checks At any rate, I believe that "killing" SPF is an idiocy; it's a good method for avoiding "mail spoofing" and it's easy enough to implement... and plugs one of the current SMTP flow mechanism holes, see, aside from SPF/SenderID there's no way to publish infos about which hosts are allowed to SEND email on the behalf of a given domain (no, DKIM is not a way); the MX mechanism only allows to specify the hosts which receive emails, so SPF plugs such a hole and imVHo it's a bad idea killing it We'll see how that "draft" will end up ;-) ------------------------------------------------------------------------------ Register Now & Save for Velocity, the Web Performance & Operations Conference from O'Reilly Media. Velocity features a full day of expert-led, hands-on workshops and two days of sessions from industry leaders in dedicated Performance & Operations tracks. Use code vel09scf and Save an extra 15% before 5/3. http://p.sf.net/sfu/velocityconf _______________________________________________ Assp-test mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/assp-test
