Save me from the bounces!
Posted 4 years, 10 months ago by AldereteI have over the last two years implemented, I think, a dozen different anti-spam technologies to protect my Inbox. (I’ll total them up and summarize my thoughts in another post.) Today I finished implemented yet another, called SPF, or Sender Permitted From (now renamed to “Sender Policy Framework”).
The idea is, if my e-mail address is “michael a-t alderete.com”, then there are only a few servers on the internet that are likely, or permitted, to send e-mail for the alderete.com domain. When you receive an e-mail from that address or domain, if you knew which servers on the internet were legitimate senders, then you could reject messages from all other servers.
This is useful because it’s common practice by spammers to forge the From: header of their spam messages, and because they are almost never able to send those messages from the real server for the domain. (This is why bouncing spam back to the sender just makes the spam problem worse.)
I had incentive to do this because one of my e-mail address domains, alderete.com, has been forged heavily recently (though not quite “Joe Job“ed), with thousands of e-mails being sent out with forged from addresses like “Tammeravxryawwv@alderete.com” and “Glenniedatjklcjyknai@alderete.com”. When the spams bounce back, they come to my Inbox. Thousands of them.
Now, SPF isn’t a panacea for this problem, mostly because there has not been a lot of deployment of the technology yet. But that’s coming; AOL recently began trialing it, and if it’s successful I am sure the other big ISPs will do so soon.
When they do, I’ll be ready to reap the benefits.
Possibly Related
The following postings on this weblog may be related to the post you’re viewing:
August 20th, 2005 at 3:00 pm
[…] The one really irritating new trend this past quarter, which doesn’t show up in the stats, is the number of bounces and anti-virus error messages hitting me. The alderete.com and aldosoft.com domains have been spoofed (forged) in a lot of spam and worm traffic, and because I have my domains “wild carded” to accept e-mail for “any-address@alderete.com”, the result is I get a lot of crap in my Inbox that is intended to let “pigxwnslesps@aldosoft.com” know that the crap didn’t go through. […]