On Fri, 13 Jul 2012 07:33:34 -0700 (PDT) John Hardin <jhar...@impsec.org> wrote:
> So does that mean it may be legitimate to treat an SPF PASS as > "something bad" if the SPF rule is defined in an "abusive" manner? Absolutely. If you do not want to receive mail from a certain domain and it passes SPF, then there's pretty good evidence the mail really *is* from that domain and that you can apply your domain policy. Regards, David.