Mailing List Archive

1 2  View All
Re: SPF -all domain survey [ In reply to ]
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Alex van den Bogaerdt wrote:
> What does your script do when you encounter something weird but valid
> like:
> [...]
> "v=spf1 ip4:0.0.0.0/128 ip4:128.0.0.0/128 -all"

Did you mean

"v=spf1 ip4:0.0.0.0/1 ip4:128.0.0.0/1 -all"

?

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHXegjwL7PKlBZWjsRAi+hAKCcVow8a2Pp2bFar1MLo0/0zlvlPwCfeRbx
3oVmgZNJ/EZjFnm3cuabyu4=
=ueCQ
-----END PGP SIGNATURE-----

-------------------------------------------
Archives: http://v2.listbox.com/member/archive/735/=now
RSS Feed: http://v2.listbox.com/member/archive/rss/735/
Modify Your Subscription: http://v2.listbox.com/member/?member_id=1311532&id_secret=74450589-3f9572
Powered by Listbox: http://www.listbox.com
Re: Re: SPF -all domain survey [ In reply to ]
On Tue, Dec 11, 2007 at 01:30:11AM +0000, Julian Mehnle wrote:

> Did you mean
>
> "v=spf1 ip4:0.0.0.0/1 ip4:128.0.0.0/1 -all"

Yep, sorry and thanks for catching this.

-------------------------------------------
Sender Policy Framework: http://www.openspf.org
Archives: http://v2.listbox.com/member/archive/735/=now
RSS Feed: http://v2.listbox.com/member/archive/rss/735/
Modify Your Subscription: http://v2.listbox.com/member/?member_id=1311532&id_secret=74454922-d42105
Powered by Listbox: http://www.listbox.com
Re: SPF -all domain survey [ In reply to ]
On Tue, Dec 11, 2007 at 02:25:43AM +0100, Alex van den Bogaerdt wrote:
> What does your script do when you encounter something weird but valid like:
> "v=spf1 ip4:1.2.3.4 -all mx ptr a"

The script now checks for " -all" somewhere in the SPF record. I'll
leave the wording on the site to read "end in -all" but check for it
anywhere.

> And what happens with:
> "v=spf1 ip4:0.0.0.0/128 ip4:128.0.0.0/128 -all"

I don't handle this sort of pathological case. Since I keep a copy of
every SPF record that contains -all, I could go back and search for
such cases later. Unless there's a compelling reason, I probably won't
actually do so. :)

For others who were asking, I also now resolve redirect= modifiers. For
example:

http://spf-all.com/query.py?domain=gladstonefamily.net&force=y

I use the wording "expanded SPF record" but as you can see this does
not do %-macro expansion, just redirect= resolution. Is there another
term I should use instead of "expanded" in this case? I didn't see any
other term that's really appropriate in RFC4408.

Greg Hewgill
http://hewgill.com

-------------------------------------------
Sender Policy Framework: http://www.openspf.org
Archives: http://v2.listbox.com/member/archive/735/=now
RSS Feed: http://v2.listbox.com/member/archive/rss/735/
Modify Your Subscription: http://v2.listbox.com/member/?member_id=1311532&id_secret=74514637-c2c03f
Powered by Listbox: http://www.listbox.com

1 2  View All