¸ÞÀÏÁÖ¼Ò º¯Á¶´Â no, SPF(Sender Policy Framework)±â¼ú¿¡ ´ëÇØ | ÀÛ¼ºÀÏ : 2005/08/03 15:44 |
![]() |
Á¶È¸¼ö : 16360 |
![]() | |||||||||
Á¦ ¸ñ : ¸ÞÀÏÁÖ¼Ò º¯Á¶´Â no, SPF(Sender Policy Framework)±â¼ú¿¡ ´ëÇØ ÀÛ¼ºÀÚ : ÁÁÀºÁøÈ£(truefeel, http://coffeenix.net/ ) ÀÛ¼ºÀÏ : 2005.8.3(¼ö) ¿ÀÈÄ »óÄèÇÑ ¾ÆÄ§¿¡ ½ºÆÔ¸ÞÀÏ·Î °¡µæÂù ¸ÞÀÏÇÔÀ» ¿ ¶§ ¸¶´Ù Ŭ¸¯°ú »èÁ¦ÀÇ ¹Ýº¹À¸·Î Â¥Áõ³ ÇϷ縦 ½ÃÀÛÇÑ ÀûÀº ¾ø´ÂÁö? - Antivirus - RBL, SURBL - procmail, byspamÅëÇÑ ½ºÆÔÇÊÅ͸µ - joe job attack¿¡ ´ëÇÑ ¹æ¾î ¼³Á¤ - spamassassinȰ¿ëÇÑ Á¡¼öÁ¦ ¸ÞÀÏ ÇÊÅ͸µ µî ´Ù¾çÇÑ ¹æ¹ýµé·Î ¸ÞÀÏ ÇÊÅ͸µÀ» Çϴµ¥ ¿À´ÃÀº SPF¿¡ ´ëÇØ ¾Ë¾Æº¸°Ú´Ù. 1. SPF(Sender Policy Framework)¶õ 10°³ÀÇ Æ÷ÅлçÀÌÆ®°¡ SPF±â¼úÀ» ÅëÇØ¼ ½ºÆÔ¸ÞÀÏÀ» ÇÊÅ͸µÇÒ °èȹÀ̶ó´Â ¿À´ÃÀÚ ±â»ç¸¦ ºÃ´Ù. Meng Weng Wong¿¡ ÀÇÇØ 2003³â¿¡ ½ÃÀÛµÈ SPF±â¼úÀº ¸ÞÀÏÀÇ Çì´õ¸¦ º¸°í ½ÇÁ¦ ÇØ´ç ¸ÞÀϼ¹ö¿¡¼ º¸³»Áø °ÍÀÎÁö¸¦ ÆÇ´ÜÇÏ¿© ¸ÞÀÏ ¼ö½ÅÀ» ¸·´Â ¹æ¹ýÀÌ´Ù. ¿¹¸¦ µé¾î ¸ÞÀÏÀÇ From Çì´õ¿¡ foo@spammer.com ¶ó°í ÀûÇôÀÖÀ¸¸é spammer.com À» °ü¸®ÇÏ´Â DNS¸¦ ÅëÇØ¼ ÇØ´ç ¸ÞÀÏÀÌ ½ÇÁ¦ spammer.com¿¡¼ ¼³Á¤ÇÑ IP¿Í ¼ö½ÅµÈ ¸ÞÀÏÇì´õÀÇ IP¿Í ºñ±³Çؼ ´Ù¸£¸é ¼ö½ÅÀ» °ÅºÎÇÏ°Ô µÈ´Ù. Áï, ½ÇÁ¦·Î hanmail.net¿¡¼ º¸³»Áö ¾ÊÁö ¾Ê¾ÒÀ¸¸é¼ ¸ÞÀÏÁÖ¼Ò´Â @hanmail.net ·Î ¼Ó¿©¼ ¹ß¼ÛµÇ´Â ¸ÞÀÏÀº ÇÊÅ͸µÀÌ °¡´ÉÇÏ°Ô µÇ´Â °ÍÀÌ´Ù. »çÁøÃâó : http://pm-lib.sourceforge.net/ ![]() 2. SPF ±â¼ú Àû¿ëÀ§ÇÑ DNS ¼³Á¤ SPF ±â¼úÀ» Àû¿ëÇϱâ À§Çؼ´Â ¸ÞÀϼ¹ö¸¦ ¿î¿µÁßÀÎ »çÀÌÆ®ÀÇ DNS¿¡´Â TXT ·¹ÄÚµå ¼³Á¤ÀÌ ÇÊ¿äÇÏ´Ù. ÀÌ ¼³Á¤Àº ´Ù¸¥ ¸ÞÀϼö½Å¼¹öµé¿¡°Ô SPFÁ¤Ã¥À» ÅëÇØ ¸ÞÀÏÀ» ÇÊÅ͸µÇϵµ·Ï µµ¿òÀ» ÁÖ±âÀ§ÇÑ ¼³Á¤ÀÌÁö º»ÀÎÀÇ ¸ÞÀϼ¹ö·Î ¼ö½ÅµÈ ¸ÞÀÏÀÌ ÇÊÅ͸µµÇµµ·Ï ¼³Á¤ÇÏ´Â °ÍÀÌ ¾Æ´Ï´Ï, DNS ¼³Á¤Çß´Ù°í '¾î~ ÇÊÅ͸µÀÌ ¾ÈµÇÁö'Çϰí Çê»ðÁýÇÏÁö ¸»±â ¹Ù¶õ´Ù. SPF ±â¼úÀ» Àû¿ëÇÏ°Ú´Ù°í º¸µµµÈ 10°³ÀÇ Æ÷ÅÐ »çÀÌÆ®¿¡ ´ëÇØ DNS ¼³Á¤À» È®ÀÎÇÑ °á°ú 5°÷ÀÇ DNS¿¡´Â ÀÌ¹Ì TXT ¼³Á¤ÀÌ µÇ¾î ÀÖ¾ú´Ù. ¡Ø 10°³ Æ÷ÅÐ »çÀÌÆ® nownuri.net, hanmail.net, chol.com, dreamwiz.com, empas.com(empal.com), korea.com, hotmail.com, paran.com, naver.com, nate.com
Àú ¼³Á¤À» º¸°í ¾î¶»°Ô TXT¸¦ ¼³Á¤ÇؾßÇÏ´ÂÁö ´«Ä¡¸¦ ëÀ» °ÍÀÌ´Ù. ---------- --------------------------------------------------------------------------- methods ¼³ ¸í ---------- --------------------------------------------------------------------------- v=spf1 SPFÀÇ ¹öÀü ip4 ¸ÞÀÏÀ» ¼Û½ÅÇÏ´Â IPÁÖ¼Òµé. 211.39.128.0/24ó·³ CIDRÇüÅ·Πǥ½Ã °¡´É a DNSÀÇ A ·¹ÄÚµå·Î ¼³Á¤ÇÑ IPÁÖ¼Ò¸¦ sender·Î ¼³Á¤ ¿¹¸¦ µé¾î dreamwiz.com¶ó¸é dreamwiz.comÀÇ IP 211.39.128.129¿Í 211.39.128.129À» sender·Î ÆÇ´ÜÇÔÀ» ÀÇ¹Ì a:foo.com ó·³ µµ¸ÞÀÎÀ» ÁöÁ¤ÇÒ ¼öµµ ÀÖ´Ù. mx MX ·¹Äڵ忡 ÁöÁ¤ÇÑ IPÁÖ¼ÒµéÀ» sender·Î ÆÇ´ÜÇ϶ó´Â ÀÇ¹Ì ptr IP¿¡ ´ëÇØ lookupÀ» ÇÏ¿© PTR ·¹Äڵ忡 ÁöÁ¤µÇ¾î ÀÖÀ¸¸é sender·Î ÆÇ´ÜÇ϶ó´Â ÀÇ¹Ì include ÁöÁ¤ÇÑ µµ¸ÞÀÎÀÇ TXT ·¹Äڵ忡¼ ¼³Á¤À» ã´Â´Ù. ~all ÀÌ method´Â TXT ·¹ÄÚµåÀÇ ³¡¿¡ ³Ö¾îÁֱ⠹ٶõ´Ù. ---------- --------------------------------------------------------------------------- º¸´Ù ÀÚ¼¼ÇÑ »çÇ×Àº http://spf.pobox.com/mechanisms.html ¸¦ ÂüÁ¶Çϱ⠹ٶõ´Ù. 3. °ü·Ã »çÀÌÆ® * SPF http://spf.pobox.com/ http://spf.pobox.com/faq.html * SPF Mechanisms http://spf.pobox.com/mechanisms.html * An Overview of the Sender Policy Framework http://www.msexchange.org/tutorials/Sender-Policy-Framework.html * SPF±â¼úÀ» À§ÇÑ DNS ¼³Á¤ http://www.petri.co.il/sender_policy_framework.htm * SPF Council (SPF ±â¼ú, Ç¥ÁØ¿¡ ´ëÇØ ³íÀÇ) http://spf.mehnle.net/Home_Page * SPF Å×½ºÆ® http://www.schlitt.net/spf/tests/ * Domain Registrars and DNS Providers that Support SPF http://www.kitterman.com/spf/txt.html * sendmail¿¡¼ SPF¸¦ À§ÇÑ ¼³Á¤(Milter-SPF ¼³Ä¡ ¹æ¹ý) http://spf.pobox.com/sendmail-milter-INSTALL.txt http://www.brandonhutchinson.com/Installing_Milter-SPF_with_Sendmail.html |
![]() |