SPF record query


i have 2 domains

a.com , b.com both publically exposed 

a.com have spf record

b.com doesn't have spf record

email transactions a.com fine.

however b.com sometime get #550 sender authorization check failed.

i gone through microsoft guidance in given link 

http://www.microsoft.com/en-us/download/details.aspx?displaylang=en&id=5546

it says

1. sender or user sends an e-mail message an e-mail client or web interface. no interaction or
changes sender's client or mail transfer agent (mta) required.
2. recipient's inbound e-mail server receives the e-mail message. the server uses sidf , calls
purported responsible domain's (prd) dns spf record.
3. receiving mta determines whether outbound e-mail server's ip address matches ip addresses authorized send e-mail domain.
4. domains , ips, sender reputation data applied sidf verdict check.
5. based on spf record syntax, pass or fail verdict, reputation data, , content filtering score, receiving mta delivers e-mail message inbox, junk or bulk folder, or quarantine folder. if e-mail message fails, receiving network may block, delete, or junk message.

if true why getting ndr above error recipient domain should block, delete, or junk message.

the mail server check spf automatically why not getting ndr every domain b.com sent email every mta checks same rfc 2822 

not every admin @ every company may have configured mail server on internet check spf, , companies use different methods check spam, results vary.

so depends on how receiving mail server (the receiving mta) handles and/or software using (either exchange, or third party smtp gateway - barracuda, postini, messagelabs, etc etc), to check spf , other spam rejection methods, and whether ndr provided or not. of smaller customers, set scl 9 , above deleted. scl 7 -8 put in junk folder.

by rights, configure spf eliminate possibility company's emails rejected solely on spf tests, companies have set reject.


ace fekay
mvp, mct, mcitp/ea, mcts windows 2008/r2 & exchange 2007, exchange 2010 ea, mcse & mcsa 2003/2000, mcsa messaging 2003
microsoft certified trainer
microsoft mvp - directory services
technical blogs & videos: http://www.delawarecountycomputerconsulting.com/

this post provided as-is no warranties or guarantees , confers no rights.

facebook twitter linkedin



Windows Server  >  Network Infrastructure Servers



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...