My understanding was that this is more applicable to senders' ISPs, rather than the receiving side. The best other option i could think of is using signatures, like Thawte's, however, this only appears to be a viable option on a voluntary basis (i.e., a subscriber could say, don't accept emails from me unless signed with ...). Many people might not like the idea of this being required.

My 2 cents...

(Apache really needs to add competent spam filtering ...)

Getting mail servers to start using something like SPF
( would go a long ways to keeping all these forged
emails with viruses from being spread around.  Seems like large mailing
lists would be a great candidate for running SPF checks on incoming email.


