The a: mechanism is not allowed to be an IP address. Arguably this was
a poor design decision, but that is what's codified in RFC 4408. See
http://www.openspf.org/RFC_4408#mech-a (and the rest of the ABNF) for
details. Whenever feasible, the package design follows RFC 4408. Note
that the
** Description changed:
- Binary package hint: postfix-policyd-spf-perl
+ Binary package hint: python-policyd-spf
May 12 00:38:47 rolly-dmz postfix/smtpd[3808]: connect from
sn16.seed.net.tw[139
.175.54.16]
May 12 00:38:47 rolly-dmz policyd-spf[3818]: SPF fail:
REMOTEIP=139.175.54.16
Thank you for your prompt reply. I agree with your assessment that a:
does not allow IPv4. I will follow up with seed.net.tw.
FYI: The wizard at http://www.openspf.org/Project_Overview will forward
to http://old.openspf.org/wizard.html?mydomain=seed.net.twsubmit=Go%21.
--
a: should allow IPv4
From the version, I see you are running Feisty. The version of the
Python policy server in the regular release does not, in fact, have a
config file and, IIRC, rejects on permerror. I substantially improved
one is available in feisty-backports. That's the one that supports the
config file.
--
On Tuesday 27 May 2008 14:09, Roger C. Pao wrote:
FYI: The wizard at http://www.openspf.org/Project_Overview will forward
to http://old.openspf.org/wizard.html?mydomain=seed.net.twsubmit=Go%21.
Thanks. I'd forgotten that.
--
a: should allow IPv4 addresses