On Wed, 2007-06-06 at 07:47 -0400, m. allan noah wrote:
> On 6/6/07, Guy Hulbert <[EMAIL PROTECTED]> wrote:
> > On Tue, 2007-06-05 at 17:43 -0700, Meng Weng Wong wrote:
> > > That said, don't use +all as an absolute indicator.  There may be
> > > good domains that do a +all too.
> >
> > This seems to make SPF a complete waste of time. Just block those
> > domains and force the lazy admins to fix their records.
> >
> 
> not a complete waste, as those admins that set it correctly get some
> protection, but yes, i do have a private patch to block +all now :) i

Can you publish it ?

> think the spec should explicitly disallow +all, and CIDR blocks larger
> than /16, just to prevent this.

That seems like a pretty large block still.  I didn't remember IP
addresses were allowed (I haven't read the SPF spec recently).

> 
> allan

-- 
--gh


Reply via email to