OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Trust (was: SPF is fundamentally broken)

From: Alex van den Bogaerdt (alexergens.op.het.net)
Date: Thu Jan 15 2004 - 08:33:30 CST


On Thu, Jan 15, 2004 at 02:54:10PM +0100, Erwan David wrote:

> > That depends on what B does with it. B took responsability for
> > the message. B cannot transfer this responsability to system C.
> > B gets to keep the responsability. If the message is lost, B is
> > not doing a good job.
>
> So you deny users of B the possibility to forward their mail ?

Show me where I say this. You can't, because I didn't.

A is denying users of B to impersonate A. If users of B want
to resent the letter, they will have to use their own address
on their own envelope.

If C does not want to, or cannot, receive the message, B had a problem
and will have to generate a bounce to the sender.

Consider the following:

B has setup his system with forwarding as being discussed in this thread.
Now consider some user at B, perhaps even _that_ particular user at B,
is sending mail to userB. Things go wrong on C. The mailbox is full.
Where does the mail go? Where does the bounce go?

Forwarding is flawed, not SPF.

Alex
--
begin sig
http://www.googlism.com/index.htm?ism=alex+van+den+bogaerdt&type=1
This message was produced without any <iframe tags