On 2007-06-06 09:24:23 -0400, Guy Hulbert wrote:
> On Wed, 2007-06-06 at 07:42 -0500, Les Mikesell wrote:
> > Guy Hulbert wrote:
> > > On Tue, 2007-06-05 at 17:43 -0700, Meng Weng Wong wrote:
> > >> That said, don't use +all as an absolute indicator.  There may be  
> > >> good domains that do a +all too.
> > > 
> > > This seems to make SPF a complete waste of time. Just block those
> > > domains and force the lazy admins to fix their records.

SPF isn't about spam prevention. It's about prevention of forgeries. If
an admin wants to allow every address on the world to send mail with his
domain that's his decision (although I wonder why he bothers to post an
SPF record in that case at all).


> > SPF is one of those things that can't possibly work:
> > http://homepages.tesco.net./~J.deBoynePollard/FGA/smtp-spf-is-harmful.html
[...]
> I don't think that the objections on the spf-is-harmful page apply to
> banks.  Their main concern is spoofing their domain for fraudulent
> purposes and SPF seems to be useful for this whatever its other flaws.

There are better ways for that (especially cryptographically signed
messages - from PGP and S/MIME to DKIM), but SPF does have the advantage
of being cheap. All you have to do is to add a TXT record to DNS.


> Is anyone *implementing* IM2000 ?

IM 2000 isn't a protocol which can actually be implemented, it's more a
general architecture or set of ideas. Some people (among them the above
mentioned Jonathan de Boyne Pollard) have specified that to greater
detail and I think there were even some prototypes written. Nothing
suitable for actual use, though, AFAIK.

> Is it worth subscribing to the appropriate list (which is ? :-).

No. The mailing list is dead. Occationally there is some spam (despite
the immensely annoying qsecretary), but the last flurry of (vaguely)
on-topic actitivity was half a year ago.

        hp

-- 
   _  | Peter J. Holzer    | I know I'd be respectful of a pirate 
|_|_) | Sysadmin WSR       | with an emu on his shoulder.
| |   | [EMAIL PROTECTED]         |
__/   | http://www.hjp.at/ |    -- Sam in "Freefall"

Attachment: signature.asc
Description: Digital signature

Reply via email to