> You  mean  that  someone  can wittingly forge the header content? In
> principle,  this  is  possible,  but this is the real crime. I'm not
> sure  that  this  the  best way to send spam. Anyone knows something
> similar?

Forged Received: headers have been used by spammers for years.

> I  believe  that they should add your ip only when they receive your
> mail in direct point-to-point connection. But if your header consist
> of more the one extern ip entry they should refer to original sender
> first.

They  have  no  reason  to  trust  that the claimed original Received:
session  actually  occurred  unless  they  specifically  evaluate your
domain's   services  and  decide  that  (some  of)  your  non-zero-hop
Received: claims can be trusted.

--Sandy


------------------------------------
Sanford Whiteman, Chief Technologist
Broadleaf Systems, a division of
Cypress Integrated Systems, Inc.
e-mail: [EMAIL PROTECTED]

SpamAssassin plugs into Declude!
  http://www.mailmage.com/products/software/freeutils/SPAMC32/download/release/

Defuse Dictionary Attacks: Turn Exchange or IMail mailboxes into IMail Aliases!
  
http://www.mailmage.com/products/software/freeutils/exchange2aliases/download/release/
  http://www.mailmage.com/products/software/freeutils/ldap2aliases/download/release/


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to