Greenguy's Board


Go Back   Greenguy's Board > Programming & Scripting
Register FAQ Calendar Today's Posts

Reply
 
Thread Tools Search this Thread Rate Thread Display Modes
Old 2005-03-31, 12:23 PM   #1
Barron
You tried your best and you failed miserably. The lesson is 'never try'
 
Join Date: Oct 2004
Posts: 166
SPF Records

I guess I'm not keeping up like I should, I had to go learn about this.

Are any of the webhosts/sysadmins doing this? Are the SPF records a must have?

My BIND is not setup with SPF. I'd rather not spend all day updating if I dont need to.

Any thoughts on rather this should be done and is it really worth the trouble?


-
Barron is offline   Reply With Quote
Old 2005-03-31, 12:52 PM   #2
cd34
a.k.a. Sparky
 
cd34's Avatar
 
Join Date: Sep 2004
Location: West Palm Beach, FL, USA
Posts: 2,396
I've run it for a while, but, I haven't really seen much of a benefit yet. I tagged all of my domains that would never send mail to fail any SPF request, and have tagged my main email domains with the proper headers. Remember, SPF protects the envelope, not the From:

http://spf.pobox.com/

As for your BIND not set up with SPF, its the matter of inserting a TXT record in each domain with the SPF line for your site.

For inbound, we have tested it and it has caught quite a few forged mails, so, it is gaining popularity. The problem that we ran into was that sometimes, PayPal and EBay's SPF records tend to time out -- presumably due to the includes. It was nice having the email tagged with SPF Fail messages which were pretty simple to filter out.

SenderID is a PRA (Purported Response Address) based system that verifies the validity of the message From: line. There is a link on the SPF site to talk more about that.

Between the two, phishing would be next to impossible.

The idea behind SPF is that you don't need it, but, if you have it, or SPFv2, then you are less likely to be the victim of a spam using your return address. Its going to require a critical mass to become much more useful, but, if everyone waits for the other guys to implement, it'll never reach critical mass.
__________________
SnapReplay.com a different way to share photos - iPhone & Android
cd34 is offline   Reply With Quote
Old 2005-03-31, 03:04 PM   #3
Barron
You tried your best and you failed miserably. The lesson is 'never try'
 
Join Date: Oct 2004
Posts: 166
Thanks!
Barron is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 11:22 AM.


Mark Read
Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
© Greenguy Marketing Inc