> If you trust those ISPs to not forge headers, then add them to the trusted > list too, and that will push the checking boundary back to where they > received the message from. > > -- > John Hardin KA7OHZ http://www.impsec.org/~jhardin/ > jhar...@impsec.org FALaholic #11174 pgpk -a jhar...@impsec.org > key: 0xB8732E79 -- 2D8C 34F4 6411 F507 136C AF76 D822 E6E6 B873 2E79 > -----------------------------------------------------------------------
Truly? Very Interesting. And just as I was having so much "fun" coming up with custom rules.