• Debian 11 is approaching its end-of-life (vendor EOL date - August 31, 2026). Plesk Obsidian 18.0.80 will be the last release to support it.
    If you are running Plesk Obsidian on Debian 11, we recommend you upgrade those servers to Debian 12 using our dist-upgrade tool.
  • We plan to deprecate and remove the support for XML RPC protocol versions earlier than 1.6.9.1 in Plesk Obsidian 18.0.82. We strongly recommend that you update all existing integrations using earlier versions of the XML RPC protocol to comply with the version 1.6.9.1 specification.

Tweak to make SPF test look at "From" header?

HostaHost

Silver Pleskian
I'm curious if there are any changes that can be made to the SPF filter, or spam assassin, to have the "From" header of the message investigated for SPF pass/fail in addition to the Return-Path? We have customers with explicit (-all) spf records still seeing forged emails coming in claiming to be from their domain because the sender used their own return-path but forged the From header.
 
Actually SPF takes all parameters from SMTP session. SPF test works before the From or Reply-TO received. It takes MAIL FROM: from SMTP session, makes DNS query to the domain, and checks IP address came from mail.
Can you show some kind of samples?
 
Back
Top