<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Tao of E-Mail &#187; forgery</title>
	<atom:link href="http://www.tao-of-email.com/tag/forgery/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tao-of-email.com</link>
	<description>Following the Way of e-mail.</description>
	<lastBuildDate>Wed, 01 Jul 2009 15:00:35 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Anti-Fraud is not Anti-Spam</title>
		<link>http://www.tao-of-email.com/2008/11/03/anti-fraud-is-not-anti-spam/</link>
		<comments>http://www.tao-of-email.com/2008/11/03/anti-fraud-is-not-anti-spam/#comments</comments>
		<pubDate>Mon, 03 Nov 2008 20:56:43 +0000</pubDate>
		<dc:creator>tgolan</dc:creator>
				<category><![CDATA[e-mail]]></category>
		<category><![CDATA[dkim]]></category>
		<category><![CDATA[forgery]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[spf]]></category>

		<guid isPermaLink="false">http://www.tao-of-email.com/?p=94</guid>
		<description><![CDATA[One of the biggest problems with e-mail is the complete lack of an inherent security model. Like the telephone, most people have come to take e-mail for granted; expecting that it simply works. Most e-mail users do not know how easy it is to forge almost every aspect of an e-mail message. We have all [...]]]></description>
			<content:encoded><![CDATA[<p>One of the biggest problems with e-mail is the complete lack of an inherent security model. Like the telephone, most people have come to take e-mail for granted; expecting that it simply works. Most e-mail users do not know how easy it is to forge almost every aspect of an e-mail message. We have all received spam that, when viewed in our e-mail client (Outlook, Entourage, Gmail, etc.) appears to have been sent to us, from us. How can this happen?</p>
<p>There is a common misconception amongst many in the e-mail security space that anti-fraud technologies like Sender Policy Framework (SPF), SenderID and Domain Keys Identified Mail (DKIM) are part and parcel anti-spam technologies. While it is true that anti-fraud/anti-forgery technologies have a nice side-effect of preventing some spam, this is not their main goal. In addition, by lumping these imporant technologies in as simply anti-spam misses the point and tends to dimish the importance of these technologies.</p>
<p>Protecting your domain from e-mail forgery is up to you; the owner of the domain. Does your domain publish a Sender Policy Framwork (SPF) record (http://www.openspf.org/)? If not, why? What are you waiting for? Is your inbound e-mail checked to see if the sender&#8217;s domain publishes a SPF record? If not, why? After all, if the sender&#8217;s domain administrator has elected to take domain forgery seriously, you should as well. Finally, are you recognizing DKIM (http://www.dkim.org/) signatures for inbound e-mail and is your e-mail server signing outbound e-mail?</p>
<p>In case you are wondering&#8230; Google, eBay, Yahoo, Cisco, and many other large companies are now on the DKIM bandwagon.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="Digg"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://sphinn.com/submit.php?url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="Sphinn"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/sphinn.png" title="Sphinn" alt="Sphinn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="del.icio.us"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;t=Anti-Fraud%20is%20not%20Anti-Spam" title="Facebook"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.mixx.com/submit?page_url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="Mixx"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/mixx.png" title="Mixx" alt="Mixx" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="Google"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google" alt="Google" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam&amp;source=The+Tao+of+E-Mail+Following+the+Way+of+e-mail.&amp;summary=One%20of%20the%20biggest%20problems%20with%20e-mail%20is%20the%20complete%20lack%20of%20an%20inherent%20security%20model.%20Like%20the%20telephone%2C%20most%20people%20have%20come%20to%20take%20e-mail%20for%20granted%3B%20expecting%20that%20it%20simply%20works.%20Most%20e-mail%20users%20do%20not%20know%20how%20easy%20it%20is%20to%20forge%20al" title="LinkedIn"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Anti-Fraud%20is%20not%20Anti-Spam&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F" title="Slashdot"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="StumbleUpon"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F" title="Technorati"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F" title="TwitThis"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/twitter.png" title="TwitThis" alt="TwitThis" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://ping.fm/ref/?link=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="Ping.fm"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/ping.png" title="Ping.fm" alt="Ping.fm" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2008%2F11%2F03%2Fanti-fraud-is-not-anti-spam%2F&amp;title=Anti-Fraud%20is%20not%20Anti-Spam" title="Live"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://www.tao-of-email.com/2008/11/03/anti-fraud-is-not-anti-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
