Gentoo Archives: gentoo-dev

From: "Robin H. Johnson" <robbat2@g.o>
To: Gentoo Developers <gentoo-dev@l.g.o>
Subject: Re: [gentoo-dev] RFC: Supprting SPF on our mail servers
Date: Fri, 12 Mar 2004 13:32:06
Message-Id: 20040312133151.GB5472@curie-int.orbis-terrarum.net
In Reply to: [gentoo-dev] RFC: Supprting SPF on our mail servers by Kurt Lieber
1 On Fri, Mar 12, 2004 at 07:49:45AM -0500, Kurt Lieber wrote:
2 > For the most part, this can be done without any significant impact on your
3 > day to day gentoo.org email lives. However, the one (major) change will be
4 > that devs would be required to use asmtp on dev.gentoo.org rather than
5 > sending from a non-gentoo.org smtp server.
6 One requirement, is a way for each developer that does use a local SMTP
7 server having a reasonable transparent way of doing all of this. As an
8 example, I've got my qmail custom-tweaked to only start bunches of
9 outgoing mail every 2 minutes, not just as needed.
10
11 The general solution missing is a way to tell our personal mail servers
12 to relay via the Gentoo SMTP servers based on the From address. My
13 laptop MTA already contacts my home server with SMTP AUTH (after SMTP
14 STARTTLS) and relays mail thru it for centralized purposes. So asmtp
15 would be used, but by our MTAs, and not us directly.
16
17 This still doesn't solve the existing problem of outgoing SMTP beyond
18 the ISP being blocked in the case of some developers (other than
19 tunneling SMTP over SSH).
20
21 > We'd also have to change the way .forwards work a bit, but that's largely
22 > behind the scenes -- you'd still be able to forward all your mail on to
23 > another address. The only change would be the envelope sender would now be
24 > changed at the time of forwarding whereas currently it is preserved.[2]
25 The loss of envelope sender at forwarding time is the main reason I
26 object to SPF. The 'solution' of SRS is not as useful as it's made out
27 to be, because for it to work properly, every forwarder along the way
28 needs to support reversing the SRS rewriting function, otherwise the
29 bounce may end up in the wrong place. Additionally, some people use the
30 original envelope sender for various sorts of mail filtering/sorting
31 (via procmail).
32
33
34 --
35 Robin Hugh Johnson
36 E-Mail : robbat2@××××××××××××××.net
37 Home Page : http://www.orbis-terrarum.net/?l=people.robbat2
38 ICQ# : 30269588 or 41961639
39 GnuPG FP : 11AC BA4F 4778 E3F6 E4ED F38E B27B 944E 3488 4E85