Lennart Mühlenmeier - GFF via mailop wrote:
As you may see, this actor also spoofed the sender, showing as it must
have come from our own mail server. We do not check DKIM strictly…

Perhaps SPF is an easier approach?

- change your SPF record from ~all to -all
- configure your MX to check for SPF

With SPF fail, your MX may:

- Reject the email outright
- Mark it as spam
- Increase its spam score

This stops most casual spoofing attempts where attackers simply set a fake 
“From:” address.



Regards
Aban

--
 Aban Dokht                                   [email protected]
------------------------------------------------------------------

_______________________________________________
mailop mailing list
[email protected]
https://list.mailop.org/listinfo/mailop

Reply via email to