https://issues.apache.org/SpamAssassin/show_bug.cgi?id=7112

            Bug ID: 7112
           Summary: SPF failures not caught for deeply nested records
           Product: Spamassassin
           Version: 3.4.1
          Hardware: All
                OS: All
            Status: NEW
          Severity: normal
          Priority: P2
         Component: Rules (Eval Tests)
          Assignee: [email protected]
          Reporter: [email protected]

Created attachment 5259
  --> https://issues.apache.org/SpamAssassin/attachment.cgi?id=5259&action=edit
Sample that reproduces the bug

We have been receiving spam that forges ebay.com, however it is not failing SPF
as it should. eBay's SPF records are quite large and deep, so we get an error
similar to the one described here:

http://www.openspf.org/Why?show-form=1&identity=ebay.com&ip-address=88.79.78.138&.submit=Submit

Attached is a snipped log of the SPF portion of scanning, as well as one of the
messages. Some searching implies it is a somewhat common issue, but nothing
SA-specific pops up. Perhaps there is a more elegant way we can deal with this
sort of error besides just giving up midway through checking? Maybe a rule like
SPF_BROKEN to detect this and apply a score?

-- 
You are receiving this mail because:
You are the assignee for the bug.

Reply via email to