OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Trust (was: SPF is fundamentally broken)

From: Alex van den Bogaerdt (alexergens.op.het.net)
Date: Thu Jan 15 2004 - 04:50:37 CST


On Thu, Jan 15, 2004 at 02:15:05AM -0500, Victor.Duchovnimorganstanley.com wrote:

> Anyone who claims that SMTP is broken is actually claiming that store and
> forward email is a bad idea. There is *nothing* in SMTP (the protocol)
> that is not inherent in store and forward email delivery (the real-life
> problem or process).

Store and forward has no problem with SPF. It is receive-and-resubmit
by the end user that has problems with SPF.

SPF defines valid exit points for a certain RHS. It does nothing to
intermediate store-and-forward MTAs within one trust domain.

Intermediate MTAs under control of the same entity trust each other.
Intermediate MTAs under control of separate entities need a mechanism
to trust each other. This mechanism is SPF.

Alex