Re: Re: domain literals
Scott Kitterman <[email protected]>
| Newsgroups | gmane.mail.spam.spf.devel |
|---|---|
| Organization | Kitterman Technical Services |
| Message-ID | <[email protected]> |
On Saturday 17 March 2007 13:05, Frank Ellermann wrote:
> Scott Kitterman wrote:
> > Given that at the beginning of the process (in the paragraph I cited a
> > few messages back) the SPF result for a non-FQDN is None, I think that
> > don't match is the only result that's consistent with that.
>
> That's not directly related. Of course the result for "HELO museum"
> is NONE because "nslookup -q=txt museum." doesn't find an SPF policy.
>
> I think... checking... yes, no policy => NONE.
>
> But for a:%{h} you'd ask for q=a (or q=aaaa), not q=txt (or q=spf),
> and they really have an IP. How good that idea is is a separate
> question, they (ab)use it for a wildcard.
>
> But "museum" isn't the only TLD with an IP. There might be even a
> TLD with an SPF policy... <shudder />
>
> SPF policies can't talk about such domains _directly_ because they
> don't have the reqired dot before a <toplabel>. But that doesn't
> affect indirect references like "a:%{h}", "mx:%{d}", or "ptr:%{o}".
>
I'll buy that.
All numeric toplables are still not FQDN and so those should still be a no
match.
Scott K
-------
To unsubscribe, change your address, or temporarily deactivate your subscription,
please go to http://v2.listbox.com/member/?list_id=1007