Doug Royer wrote:
[HELO checking] keeps admins from spending time trying to figure out which domain
really sent the email by having to go to ARIN (or whichever) when everything
in the spam is forged.
So verifying the HELO domain gives the verifier a key it can use to better make abuse reports. Is this a fair summary of the claim?
I do not think that HELO validation would stop or slow spam directly. I do think it would allow them to be shut down faster.
What would inhibit spammers from simply using unverifiable domains in HELO?
What is the incentive to get legitimate unverifiable senders to publish HELO authorization records, that they will otherwise get a large number of misdirected abuse reports?
The From: header is a much more logical and useful fallback for the empty return-path.
Its logical when it can be trusted. Almost all of the time when the HELO value
is bogus, so is the MAIL FROM and From: value.
If we checked the authorization records, we could trust it. The proposal I was responding to was one where the receiver checks the domain of MAIL FROM if it is non-empty, but checks HELO when MAIL FROM is empty. My point is that an algorithm that instead checks the domain in From: when MAIL FROM is empty would be much more logical and useful.
Greg Connor wrote:
You seem to have a bias against HELO checking. Perhaps it would be more effective to state "I don't like the idea of HELO checking" and say why you feel that way, rather than taking apart other people's statements when they disagree with you. It's OK to disagree, but I find it's clearer if you do so in a straight-forward manner.
I am skeptical that HELO checking is worth the cost.
Many people advocating HELO checking are being unclear as to why they believe it would help. The arguments parse as "With HELO checking, the receiver has a verified domain identity of the sending MTA. Then a miracle occurs. We then have reduced spamming." I'd like to get more clarity on that middle step.
Doug Royer | http://INET-Consulting.com
-------------------------------|-----------------------------
Doug@xxxxxxxxx | Office: (208)520-4044
http://Royer.com/People/Doug | Fax: (866)594-8574
| Cell: (208)520-4044Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature