On 2010/12/17 11:47 AM, Ted Mittelstaedt wrote:
And what prevents a spammer from forging this into a header and
bypassing SA?  Just askin.

Without checking, I'd guess that matching an authentication header with an address in trusted_networks would be sufficient. If your authentication server is relaying for spammers, you've got an entirely different problem.

--
/Jason

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to