Re: private relay ... could i use srs to avoid spffail?

David Woodhouse <[email protected]> Fri, 01 Dec 2006 14:48:48 +0000
Newsgroups gmane.mail.spam.srs.general
Message-ID <[email protected]>
On Fri, 2006-12-01 at 08:39 -0600, wayne wrote:
> Doesn't doing SRS on all outgoing email cause problems with certain
> mailing lists (ezlm?), vacation programs and other (broken) stuff that
> assumes the 2821.MAILFROM stays constant?

Yes, that's the theory. Ironically, in practice the only mailing list
with which I've had a problem was the one we set up to discuss precisely
this, which ended up being called 'SES' before people starting hanging
all kinds of other things on it and it went off into the weeds.

I haven't actually noticed any broken vacation messages going missing,
although I'm sure it'll have happened. In practice, most broken vacation
messages which don't use MAIL FROM:<> will _also_ make the mistake of
sending back to the From: address instead of the reverse-path. So they
get through anyway.

> Some people have also suggested that by using SRS on all outgoing
> email lets you reject bogus bounces, but in order to do that you have
> to make sure that *ALL* legitimate email sent using your domain name
> gets processed by SRS.  Roaming users and people working form home and
> such have to be tought to always use RFC2476's SMTP submission port
> (587).

In my case it's a per-user setting. Users can opt in (or opt out; it
varies from domain to domain).

-- 
dwmw2