North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: On the inoc-dba subject

  • From: Jon Lewis
  • Date: Mon Feb 06 11:08:57 2006

On Mon, 6 Feb 2006, Joe Maimon wrote: publishes a SPF record:
"v=spf1 ip4: mx ~all"

Besides going from soft-fail (~all) to fail (-all), they are already
giving you the tools you need to validate a MAIL FROM: claim.
Thats all very well and good, but advising people who do not validate with spf to whitelist by domain name is an over-simplification.
So call it additional clue-boundary to entry and be done with this silly thread.

Besides, the site doesn't specify how to filter/whitelist...just to make sure you can accept mail from A simple person might take that to mean "I better allow any from address" but that's not what the site says.

Jon Lewis | I route
Senior Network Engineer | therefore you are
Atlantic Net |
_________ for PGP public key_________