Bank of America has published SPF records, but they are using a feature which results in messages merely being suspect when the message isn't sent from a system that's part of Bank of America's computer network. This effectively allows emails that fraudulently indicate they came from Bank of America to be received by the specified recipient, thus failing to prevent the harm that Sender ID is designed to stop.
domains for which the above description applies:
For the DNS geeks among you, here's what they currently publish:
bankofamerica.com
; <<>> DiG 9.2.0 <<>> @ns4.bankofamerica.com. -t any bankofamerica.com. ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 46476 ;; flags: qr aa rd; QUERY: 1, ANSWER: 10, AUTHORITY: 0, ADDITIONAL: 0 ;; QUESTION SECTION: ;bankofamerica.com. IN ANY ;; ANSWER SECTION: bankofamerica.com. 3600 IN SOA primarydmz.bankofamerica.com. hostmaster.bankofamerica.com. 934 3600 600 604800 600 bankofamerica.com. 43200 IN NS ns1.bankofamerica.com. bankofamerica.com. 43200 IN NS ns3.bankofamerica.com. bankofamerica.com. 43200 IN NS ns4.bankofamerica.com. bankofamerica.com. 3600 IN TXT "v=spf1 a:sfmx02.bankofamerica.com a:sfmx04.bankofamerica.com a:vamx04.bankofamerica.com a:vamx02.bankofamerica.com a:txmx02.bankofamerica.com a:txmx04.bankofamerica.com a:cr-mailgw.bankofamerica.com a:cw-mailgw.bankofamerica.com ~all" bankofamerica.com. 300 IN MX 10 txemail2.bankofamerica.com. bankofamerica.com. 300 IN MX 10 vaemail2.bankofamerica.com. bankofamerica.com. 300 IN MX 10 sfemail2.bankofamerica.com. bankofamerica.com. 3600 IN A 171.161.161.173 bankofamerica.com. 3600 IN A 171.159.65.173 ;; Query time: 69 msec ;; SERVER: 171.159.192.15#53(ns4.bankofamerica.com.) ;; WHEN: Tue Sep 20 09:13:33 2005 ;; MSG SIZE rcvd: 500
| Topic CluelessBankOfAmerica . { Edit | Ref-By | Attach | Diffs | r1.1 } |
|
Revision r1.1 - 20 Sep 2005 - 16:20 by EliMantel Privacy Policy |
Copyright © 2000-2005 by the contributing authors.
All material on this collaboration tool is the property of the contributing authors. Collect email addresses here. Ideas, requests, problems regarding TWiki? Send feedback. |