[DShield] SPF is fundamentally flawed

On Thu, 2004-02-19 at 15:25, Erik van Straten wrote:

> AOL's MTA's are RFC-compliant. However AOL has introduced SPF records
> (which is why I used them as an example) probably because spammers often
> use MAIL FROM: <someone at aol.com> from *any* backdoored PC in the world.
> This causes AOL to get many bounces for spams that cannot be delivered,
> while it did not originate from AOL PC's.

They'd better remove the "?all" then, if they want SPF to have any

