Re: SPAM : New things for fight ?

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



"user" <user@xxxxxxxx> wrote:

Cracked mean that SPAM pass throught SENDER ID protection ... i read it on
forum ...

SPF and SenderID are used to validate the sending IP address. It's not
"anti spam", it's not even "anti-spoofing" (nothing prevents a spammer
from putting SPF TXT records into DNS). It can be useful if someone
does spoof an address (but even that's questionable because there are
lots of incorrect in all those resource records), but it's value comes
from knowing that the IP address is being used in a way that you find
objectionable. If they verify, with SPF/SenderID that they are, in
fact, authorized to use that IP address you can stop accepting
connections from the IP address or just drop the mail from the sening
domain without any qualms.

Why don't we create a new secure protocol for MAIL ? something sure like
"HTTP", :-), for the moment, when i ask a http web site, i see the good web
site and not another web site .. is it not possible to make it with MAIL ?

HTTP is a connectionless point-to-point protocol. If you think it's
secure, please explain the large number of open HTTP proxy servers on
the Internet.

Why not create a global kind of WHITELIST of smtp server that people could
trust (instead of create a BLACKLIST).....

Who decides what gets onto the list? Advertisers? The owner of the
list? Can you buy your way onto the list (a la "bonded sender")?

You can easily create your own. Just accept connections from a list of
IP addresses you maintain.

--
Rich Matheisen
MCSE+I, Exchange MVP
MS Exchange FAQ at http://www.swinc.com/resource/exch_faq.htm
Don't send mail to this address mailto:h.pott@xxxxxxxxxxxxx
Or to these, either: mailto:h.pott@xxxxxxxxxxxxxxx mailto:melvin.mcphucknuckle@xxxxxxxxxxxxx mailto:melvin.mcphucknuckle@xxxxxxxxxxxxxxx
.



Relevant Pages

  • Re: [fw-wiz] Evolution of Firewalls
    ... With the exception of HTTP and FTP most connections, ... - You can't stealth scan a server protected by an ALG because ... SPF permits the first SYN packet ... The only reason pro SPF I've ever ...
    (Firewall-Wizards)
  • Re: SPF/pc, Gone???
    ... We also use SPF so I sent them an email and got this response. ... only to find the web site had expired and the phone numbers ... send email to listserv@xxxxxxxxxxx with the message: GET IBM-MAIN INFO ... Search the archives at http://bama.ua.edu/archives/ibm-main.html ...
    (bit.listserv.ibm-main)