摘要
简单邮件传输协议(SMTP)缺乏必要的身份认证机制,使得互联网中的恶意用户可以伪造邮件地址实施垃圾邮件攻击。为了应对这种威胁,许多软件厂商与组织提出了各种邮件认证技术。文中重点讨论了发送方策略框架、发件人ID框架、邮件域名密钥验证、反弹地址标记验证等邮件认证技术的工作原理,并就这些技术面临的主要问题及发展前景进行了分析。
SMTP has a fundamental flaw: a lack of identity authentication. This means that malicious users on the Internet can forge e-mail addresses and initiate spam attacks. To cope with these threats, many software vendors and organizations have put forward e-mail authentication technologies. The paper mainly discusses the working principles of e-mail authentication technologies such as SPF, SIDF, DKIM and BATV. Finally, this paper analyzes the problems and prospects of these technologies.
出处
《通信技术》
2008年第11期166-168,共3页
Communications Technology