Am 04.02.2016 um 18:30 schrieb Alan Hodgson:
On Thursday, February 04, 2016 06:06:14 PM Reindl Harald wrote:
before Google ist telling somebody something they should better learn
the difference between "~" and "-" in a SPF record to make gmail.com at
least on envelope-level spoofing protected

i high percentage of spam here would not only have been flagged but
outright rejected if they would do their own homework

;; ANSWER SECTION:
gmail.com.              300     IN      TXT     "v=spf1
redirect=_spf.google.com"

;; ANSWER SECTION:
_spf.google.com.        300     IN      TXT     "v=spf1
include:_netblocks.google.com include:_netblocks2.google.com
include:_netblocks3.google.com ~all"

SPF strict outright breaks mail forwarding, unless the forwarder rewrites the
envelope sender

since https://en.wikipedia.org/wiki/Sender_Rewriting_Scheme and gmail it self implements SRS fot their own forwardings that is no excuse

it would possibly reduce the amount of people forwarding their mails from a 10 years old freemail account to a differnt freemail provider with a 5 year old address and from there to their personal domain with the result of procude backscatters all over the world and make a lot of "last-external" rules useless


Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to