On 2010/12/17 11:47 AM, Ted Mittelstaedt wrote:
And what prevents a spammer from forging this into a header and bypassing SA? Just askin.
Without checking, I'd guess that matching an authentication header with an address in trusted_networks would be sufficient. If your authentication server is relaying for spammers, you've got an entirely different problem.
-- /Jason
smime.p7s
Description: S/MIME Cryptographic Signature