Skip to main content

I am not that familiar with the Emailer, but I experimented a bit with it and I find it a bit worrisome that I can send a mail from one mail adress (not necessarily mine) to another mail adress. I tested using my colleague's mail adress to send a mail to my own mail adress and I don't need to authenticate that I am the colleague.

You can choose yourself to have the sender's authentication on, but I would prefer that it's always required so you will be sure that the person who sents the mail is indeed the sender and not someone else.

I'm no expert, but I believe it depends on the mail server settings if you are allowed to spoof / send mail from another email address.

 

The emailer is just following the options the SMTP protocol / rules allow us to. I think this should be fixed in the mailserver, not in the software.

 

If no harm is intended or caused, spoofing is not illegal. There are probably use cases where you want to use spoofing, tho personally I'm not a fan of it, as filters often mark email as spam when the sender was not authenticated.


Reply