All, I believe SPF pluging is active: "loadplugin Mail::SpamAssassin::Plugin::SPF". How do I find out if this is activive in my configurations. If it is not, could some one points me in the right direction.

Thanks.

On 1/12/06, Matt Kettler <[EMAIL PROTECTED]> wrote:
Screaming Eagle wrote:
> All,
> I am getting spam email with return-path of my domain name, but:
>
> Received: from friend (dsl-201-135-40-163.prod-infinitum.com.mx
> <http://dsl-201-135-40-163.prod-infinitum.com.mx> [201.135.40.163
> < http://201.135.40.163>] (may be forged))

Three letters. SPF.

Publish a SPF record for your domain, and enable the SPF plugin.

After that all mail forging your domain, or any other SPF domain, will get
penalized SPF_FAIL or SPF_SOFTFAIL (depending on what your "all" record looks
like).

From there you can adjust the score of SPF_FAIL, or make a meta test that checks
for SPF failures for your domain and hits them hard.

Reply via email to