Free Newsletters
InfoWorld Daily

InfoWorld
Log-in | Register

Ciphertrust adds support for SPF antispoofing

E-mail security appliance has features to prevent forged sender addresses

By Paul Roberts, IDG News Service
February 12, 2004
 

A new feature in the IronMail e-mail security appliance will support new antispam technology that prevents the use of forged or "spoofed" sender addresses on unsolicited commercial "spam" e-mail, CipherTrust Inc. said Thursday.

Free IT resource

Open Source Business Conference (OSBC) May 22-23, 2007

Sponsored by OSBC

Free IT resource

Virtualization Insights from Top Experts - Learn how virtualization gets real!

Sponsored by Dell

The Atlanta company announced that IronMail 4.0 now supports Sender Policy Framework (SPF), one of a number of new technologies that authenticate e-mail senders and block spam before they are sent, CipherTrust said.

E-mail using spoofed Internet domains often play a role in so-called "phishing" schemes, in which unwitting Internet users are led to Web pages that look like legitimate online businesses, but are actually scam sites designed to harvest personal information like user names, passwords and credit card numbers.

SPF is not a spam filtering technology. Instead of analyzing the content of messages to spot spam, SPF allows Internet domain administrators to describe their e-mail servers in an SPF record that is attached to the DNS (Domain Name System) record. Other Internet domains can then reject any messages that claim to come from that domain but weren't sent from an approved server, said Meng Wong, independent antispam researcher and primary author of the SPF protocol.

Unlike spam filters, the SPF technology allows e-mail gateways to analyze the e-mail envelope, a wrapper for the message that is transferred between mail servers before the full message is sent. Messages that do not come from a valid server at the domain are dropped, before any message content is sent. Because no message content is sent, organizations save Internet bandwidth and computing resources compared with filtering, which requires bogus messages to be sent, received and then analyzed, Wong said.

CipherTrust added an SPF registry to the IronMail 4.0 correlation engine, known as the Enterprise Spam Profiler (ESP). That allows the IronMail appliance to match the e-mail envelope back to published SPF records on the Internet, said Paul Judge, chief technology officer at CipherTrust.

The appliance uses SPF matching as part of the ESP rating assigned to each e-mail record. A failure to match on an SPF record may or may not result in the message being dropped immediately, depending on other factors, Judge said.

CipherTrust's professional services group is working with customers to publish SPF records for their domain. The company expects that IronMail's support of SPF will result in a number of high-profile customers, including the Federal Deposit Insurance Corp. publishing SPF records for their domains, Judge said.

"We have 1400 (IronMail) gateways across the e-mail universe and we're working with our customer base to educate them about SPF. We have 20 percent of the Fortune 500 as customers. Many of them have been victims of phishing attacks and are looking for ways to protect themselves," he said.

CipherTrust's adoption of SPF is encouraging to Wong, who said that more than 7,000 Internet domains have already published SPF records, including Internet service provider (ISP) America Online Inc. (AOL), companies such as AltaVista Co. and Ticketmaster Inc. and universities, including Oxford University in the U.K., Wong said.

The widespread adoption is particularly impressive because an official Internet draft for SPF was only published this month and the technology has just begun the process of obtaining official RFC (Request for Comment) standard status, he said.

"This is just a formalized version of what a lot of people are already doing. A lot of domains already check mail that's coming from (Microsoft Corp.'s) Hotmail or Yahoo to see if its coming from actual Hotmail or Yahoo machines," Wong said. "SPF is just giving everyone an open, standardized way of doing what they already want to do."

IronMail 4.0 with SPF support is available now from CipherTrust, Judge said.





 

TOP NEWS:


»  Four quick tips for choosing an IM security product
71 percent of businesses will invest in real-time messaging this year. If you're one of them, be sure to protect your enterprise

»  Forrester analysts ID hot IT jobs
Research group finds 16 IT roles with a promising future

»  Nvidia claims 10 hours of HD video on Tegra chip
The Tegra 600 and 650 can be used with hard disk drives and are designed partly for mobile Internet devices

»  Database vendors add Google's MapReduce
Greenplum and Aster Data Systems will support Google's programming technique, developed for parallel processing of large data sets across commodity hardware

»  Network management: Tips for managing costs
New technologies, changing requirements, and ongoing equipment maintenance and upgrades cost money, but there are ways to manage expenses

»  EMC targets SMBs, branch offices with new low-end storage
Celerra NX4 highlights include thin provisioning, snapshot technology for data recovery and backups, and Web-based console for management of storage volumes




MIGRATING TO VISTA
Join Windows Vista Expert, Richard Whitehead as he presents the benefits and challenges of migrating to Windows Vista. Sponsored by Novell

»  Click here to view this Webcast
  WAN Emulation Sponsored Solutions Guide
WAN emulation technology enables IT organizations to predict reliably how applications will perform in a networked environment, before application rollout, mitigating development risk and costs.This Sponsores Solutions Guide has everything you need to now about WAN emulation and WAN and how to best implement it in your organization. Sponsored by Shunra

»  Click here to download now

- Special Advertising Partners -
WHITE PAPERS
 

» Technology White Papers Library

Technology White Papers by Topic

Technology White Papers E-mail Alert

Find out when the latest white paper is available:
 
 
INFOWORLD MARKETPLACE
 
» BUY A LINK NOW
 

FIND PRODUCTS AND COMPANIES
» COMPLETE PRODUCT GUIDE



TECHNOLOGY INDEX
• Applications
• Application Development
• Security
• Networking
• Wireless
• Platforms
• Hardware
• Data Management
• Storage
• Web Services
• Business
• Telecom
• Professional Services
• Standards

TECH WATCH 


What's the 411 on GOOG-411?
Just as Google has become synonymous with "performing a Web search," 411 is understood to mean "information" -- as in "what's the 411?" I was thus surprised to discover, from a billboard, no less, that the king of search is taking on the ...

Apple HTML source reveals 'iPhone Extreme'
"This one's a stretch..." reports AppleInsider. Um, yeah. Reporting on HTML code sightings of product names could be called a stretch, but iPhone Extreme has a ring to it. Now, that sounds like the product Apple should have released first, rather ...

COLUMNISTS

Unified under law
Ephraim Schwartz's Column and Blog (InfoWorld) - In the litigious world we live in, deploying a unified communications platform in your enterprise could...
» MORE COLUMNISTS

MORE INFOWORLD BLOGS


Open Sources 
Product Management
When I joined MySQL four years ago, there was quite a lot of debate about product management. We didn't actually have ...

Zero Day 
Botnet herders tending smaller flocks
New research backs up the theory that botnet operators are keeping their networks smaller in a continued effort to keep ...



• Advice Line
• Database Underground
• The Deep End
• Enterprise Mac
• Geeks in Paradise
• Grid Meter
• The Gripe Line
• InfoWorld Daily
• Inside IT
• IT Troubleshooter
• ITXtreme
• Open Sources
• ProdBlog
• Real World SOA
• Reality Check
• Security Adviser
• SMB IT
• The Storage Network
• Tech Watch
• Virtualization Report
• Zero Day

ADVERTISEMENT


RESOURCE CENTERadvertisement 

GOVERNMENT IT & POLICY
'If you don't go after the network, you're never going to stop these guys. Never.'
From the State Department, All the News for Inquiring Minds
TechPresident, the Internet Citizenry's New Consensus Taker



Sponsored Technology Links

 
 
 HOME  NEWS  BLOGS  PODCASTS  VIDEOS  TECHNOLOGIES  TEST CENTER  EVENTS  CAREERS   About | Advertise | Awards | RSS | Contact Us 

Copyright © 2008, Reprints, Permissions, Licensing, IDG Network, Privacy Policy, Terms of Service.
All Rights reserved. InfoWorld is a leading publisher of technology information and product reviews on topics including viruses,
phishing, worms, firewalls, security, servers, storage, networking, wireless, databases, and web services.

CIO :: ComputerWorld :: CSO :: Demo :: GamePro :: Games.net :: IDG Connect :: IDG World Expo
Industry Standard :: IT World :: JavaWorld :: LinuxWorld :: MacUser :: Macworld :: Network World :: PC World :: Playlist