SPF or Sender Policy Framework, allows the owner of an Internet domain to use special format of DNS TXT records or the newer SPF records to specify which machines are authorized to transmit e-mail for that domain.
SPF makes it easy for a domain, whether it's an ISP, a business, a school or a vanity domain, to say, "I only send mail from these machines. If any other machine claims that I'm sending mail from there, they're lying."
So what does SPF actually do ?
Suppose a spammer forges a hotmail.com address and tries to spam you.He connects from somewhere other than hotmail.When his message is sent, you see MAIL FROM:
Hotmail publishes an SPF record. That record tells you (your computer) how to find out if the sending machine is allowed to send mail from Hotmail.
If Hotmail says they recognize the sending machine, it passes, and you can assume the sender is who they say they are. If the message fails SPF tests, it's a forgery. That's how you can tell it's probably a spammer.
For more information on SPF, and you to create SPF records for your domains, visit
openspf.org
No comments:
Post a Comment