Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 620246 - smtp.gentoo.org has no SPF record
Summary: smtp.gentoo.org has no SPF record
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Infrastructure
Classification: Unclassified
Component: Other (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Infrastructure
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2017-05-31 08:46 UTC by Ulrich Müller
Modified: 2017-06-05 05:48 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Ulrich Müller gentoo-dev 2017-05-31 08:46:14 UTC
http://www.openspf.org/FAQ/Common_mistakes#helo recommends to publish SPF records for HELO names used by mail servers.

However:
$ host -t TXT smtp.gentoo.org
smtp.gentoo.org has no TXT record

I'd suggest to add a simple policy like "v=spf1 a -all" there.

Presumably, the same applies to pigeon.gentoo.org as well.
Comment 1 Matthew Thode ( prometheanfire ) archtester Gentoo Infrastructure gentoo-dev Security 2017-05-31 15:24:31 UTC
Not sure this is actually needed if google isn't doing it.

google.com mail is handled by 30 alt2.aspmx.l.google.com.
alt2.aspmx.l.google.com has no TXT record
alt2.aspmx.l.google.com has no SPF record
Comment 2 Robin Johnson archtester Gentoo Infrastructure gentoo-dev Security 2017-06-05 05:43:20 UTC
Google sends "EHLO gmail.com", and they DO have SPF for that entry.
Comment 3 Robin Johnson archtester Gentoo Infrastructure gentoo-dev Security 2017-06-05 05:48:26 UTC
Implemented