wayne | 5 Jun 2005 21:33

Re: SPF I-D for review: draft-schlitt-spf-classic-01.txt DNS comments


In <VPOP32.1.7.20050602172121.260.1.1.2853140e <at> [217.155.134.110]> willemien <at> amidatrust.com writes:

> I have posted some questions on the DNS Stuff forum about the SPF draft.

Hi!

Thanks for the review.  Frank has already commented on this, but I'll
add one more note.  I have also posted a reply to the DNS Stuff forum.

> 3.1.1
> An SPF-compliant check SHOULD try to look up and use a record of the SPF type first, before falling back to
the TXT type.  However, the client MAY also look up both types in parallel.
> If, for a domain, both types are obtained but their contents do not match, the SPF client SHOULD return a
"PermError" result.
>
> The "PermError" rule is NOT mentioned in 4.5 Selecting records.
> Also:
> What to do if both rules are not identical but they both exclude or allow the domain in question?
> Still the SPF client SHOULD return a "PermError" result?

I have moved all of the text about the different lookups out of
section 3.1.1.  I have updated section 4.4 "Record Lookup" to mention
that the lookups can be performed in parallel and I have updated
seciton 4.5 "Selecting Records" to define the PermError results

-wayne


Gmane