[88446] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: On the inoc-dba subject

daemon@ATHENA.MIT.EDU (Rubens Kuhl Jr.)
Mon Feb 6 07:32:15 2006

Date: Mon, 6 Feb 2006 10:31:44 -0200
From: "Rubens Kuhl Jr." <rubensk@gmail.com>
To: Joe Maimon <jmaimon@ttec.com>
Cc: nanog@nanog.org
In-Reply-To: <43E73E17.20102@ttec.com>
Errors-To: owner-nanog@merit.edu


> "
> Please make sure that your spam filters allow email from "pch.net"
> before you sign up, since we will need to automatically verify your
> email address.
> "
>
> Since we all know that whitelisting and blacklisting by in-band stated
> "from" email address is quite wrong-headed, from a clue standpoint.
>
>
> Perhaps something like this?
>
> "
> Please make sure that your spam filters allow email sent from
> <ip-addresses> with a from address of pch.net before you sign up, since
> we will need to automatically verify your email address.
> "
>
> Where <ip-addresses> is the output of a dig command against the outgoing
> smtp servers sending the notifications?

pch.net publishes a SPF record:
"v=3Dspf1 ip4:204.61.210.70/32 mx mx:woodynet.net a:sprockets.gibbard.org
a:ghosthacked.net ~all"

Besides going from soft-fail (~all) to fail (-all), they are already
giving you the tools you need to validate a MAIL FROM: claim.


Rubens

home help back first fref pref prev next nref lref last post