> You mean that someone can wittingly forge the header content? In > principle, this is possible, but this is the real crime. I'm not > sure that this the best way to send spam. Anyone knows something > similar?
Forged Received: headers have been used by spammers for years. > I believe that they should add your ip only when they receive your > mail in direct point-to-point connection. But if your header consist > of more the one extern ip entry they should refer to original sender > first. They have no reason to trust that the claimed original Received: session actually occurred unless they specifically evaluate your domain's services and decide that (some of) your non-zero-hop Received: claims can be trusted. --Sandy ------------------------------------ Sanford Whiteman, Chief Technologist Broadleaf Systems, a division of Cypress Integrated Systems, Inc. e-mail: [EMAIL PROTECTED] SpamAssassin plugs into Declude! http://www.mailmage.com/products/software/freeutils/SPAMC32/download/release/ Defuse Dictionary Attacks: Turn Exchange or IMail mailboxes into IMail Aliases! http://www.mailmage.com/products/software/freeutils/exchange2aliases/download/release/ http://www.mailmage.com/products/software/freeutils/ldap2aliases/download/release/ To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/
