Amazon Simple Email Service – SPF設定

  • 投稿者:
  • 投稿カテゴリー:aws / SES

SPFとは

Sender Policy Framework(SPF)はSMTPを利用したインターネット電子メールの送受信において
送信者のドメインの偽称を防ぎ、正当性を検証する仕組みのひとつ

2015-04-15_204341

設定方法

レコードについて

Type:SPFとTXTを以下内容で用意する(akat.infoの場合)

"v=spf1 include:amazonses.com -all"

2015-04-15_213850

設定する

2015-04-15_205712

2015-04-15_213548

2015-04-15_213504

メールソースを確認する

                                                                                                                                                                                                                                                      
Delivered-To: shimizu.r.hiroaki@gmail.com
Received: by 10.28.21.137 with SMTP id 131csp2502040wmv;
        Wed, 15 Apr 2015 06:00:03 -0700 (PDT)
X-Received: by 10.55.50.20 with SMTP id y20mr51086024qky.58.1429102802961;
        Wed, 15 Apr 2015 06:00:02 -0700 (PDT)
Return-Path: <0000014cbd2a3147-1b079a32-53a8-4c93-b3be-97a0235783f7-000000@amazonses.com>
Received: from a8-26.smtp-out.amazonses.com (a8-26.smtp-out.amazonses.com. [54.240.8.26])
        by mx.google.com with ESMTPS id p49si4499281qgp.124.2015.04.15.06.00.02
        for <shimizu.r.hiroaki@gmail.com>
        (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128);
        Wed, 15 Apr 2015 06:00:02 -0700 (PDT)
Received-SPF: pass (google.com: domain of 0000014cbd2a3147-1b079a32-53a8-4c93-b3be-97a0235783f7-000000@amazonses.com designates 54.240.8.26 as permitted sender) client-ip=54.240.8.26;
Authentication-Results: mx.google.com;
       spf=pass (google.com: domain of 0000014cbd2a3147-1b079a32-53a8-4c93-b3be-97a0235783f7-000000@amazonses.com designates 54.240.8.26 as permitted sender) smtp.mail=0000014cbd2a3147-1b079a32-53a8-4c93-b3be-97a0235783f7-000000@amazonses.com;
       dkim=pass header.i=@akat.info
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple;
	s=ug7nbtf4gccmlpwj322ax3p6ow6yfsug; d=amazonses.com; t=1429102801;
	h=MIME-Version:Date:Message-ID:Subject:From:To:Content-Type:Feedback-ID;
	bh=jhoW+2zAUS1LIsz+NcFiIwRNS5nxayfl+LEfO/az5fk=;
	b=lK3AxidUcMmZrYZTlPC9ovck+/P9QZdsKxLayxXRP4OqzMSi7O8zdWeQjeDhNyl7
	Rwsuatiy5HNbEZGELChR9aFQMpFl4ZOQgEdLe5LimsgljLLKwtDyXjOXZhLyZiqW9V0
	mbcLGFHDkHHFyZqnKbrYeW+OEY6PF7qMZOV/reDk=
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple;
	s=3sarltvmakyemy6hhlzg72nk2tutdkaz; d=akat.info; t=1429102801;
	h=MIME-Version:Date:Message-ID:Subject:From:To:Content-Type;
	bh=jhoW+2zAUS1LIsz+NcFiIwRNS5nxayfl+LEfO/az5fk=;
	b=ghtkHksF7HDlKzVe580n1LEx5zH6qfr1nLXcDW+oimB2ByMRlDr7vpvCbMGjQE0h
	voklQNrvp05ouM1hCtq72mUBOg51ScJNHd1QzqihLVotYkd94RDdtrmSR3CdvMSdJtT
	R3GeJVKh0ZHlpOvepsS/Z73G1Q3bnKGZSa1nSmUw=
MIME-Version: 1.0
X-Received: by 10.112.188.194 with SMTP id gc2mr23673769lbc.25.1429102799546;
 Wed, 15 Apr 2015 05:59:59 -0700 (PDT)
Date: Wed, 15 Apr 2015 13:00:01 +0000
Message-ID: <0000014cbd2a3147-1b079a32-53a8-4c93-b3be-97a0235783f7-000000@email.amazonses.com>
Subject: SPF test from SES
From: FROM SES <dummy@akat.info>
To: =?UTF-8?B?5riF5rC06KOV5pqB?= <shimizu.r.hiroaki@gmail.com>
Content-Type: multipart/alternative; boundary=001a11c37ac0b6f03a0513c2ec76
X-SES-Outgoing: 2015.04.15-54.240.8.26
Feedback-ID: 1.us-east-1.f1xduSffVltn8OQQqUCReNketavtBO5v2BYoNwQkrC0=:AmazonSES

--001a11c37ac0b6f03a0513c2ec76
Content-Type: text/plain; charset=UTF-8

SPF test from SES

--001a11c37ac0b6f03a0513c2ec76
Content-Type: text/html; charset=UTF-8

<div dir="ltr">SPF test from SES</div>

--001a11c37ac0b6f03a0513c2ec76--

ぶっちゃけ設定しても変化がなかったので、間違ったレコードを設定してみた

2015-04-15_221500

メールソースを確認してみたが、特に違いはなかった。。

                                                                                                                                                                                                                                                               
Delivered-To: shimizu.r.hiroaki@gmail.com
Received: by 10.28.21.137 with SMTP id 131csp761221wmv;
        Sat, 18 Apr 2015 21:47:34 -0700 (PDT)
X-Received: by 10.141.18.208 with SMTP id u199mr11745706qhd.47.1429418853654;
        Sat, 18 Apr 2015 21:47:33 -0700 (PDT)
Return-Path: <0000014cd000bf2e-86b35367-3182-4404-bc4f-4e3e78b8a3fc-000000@amazonses.com>
Received: from a9-100.smtp-out.amazonses.com (a9-100.smtp-out.amazonses.com. [54.240.9.100])
        by mx.google.com with ESMTPS id y98si16196783qgd.100.2015.04.18.21.47.33
        for <shimizu.r.hiroaki@gmail.com>
        (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128);
        Sat, 18 Apr 2015 21:47:33 -0700 (PDT)
Received-SPF: pass (google.com: domain of 0000014cd000bf2e-86b35367-3182-4404-bc4f-4e3e78b8a3fc-000000@amazonses.com designates 54.240.9.100 as permitted sender) client-ip=54.240.9.100;
Authentication-Results: mx.google.com;
       spf=pass (google.com: domain of 0000014cd000bf2e-86b35367-3182-4404-bc4f-4e3e78b8a3fc-000000@amazonses.com designates 54.240.9.100 as permitted sender) smtp.mail=0000014cd000bf2e-86b35367-3182-4404-bc4f-4e3e78b8a3fc-000000@amazonses.com;
       dkim=pass header.i=@akat.info
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple;
	s=ug7nbtf4gccmlpwj322ax3p6ow6yfsug; d=amazonses.com; t=1429418852;
	h=MIME-Version:Date:Message-ID:Subject:From:To:Content-Type:Feedback-ID;
	bh=4aSX303Wz3SQkY7WURCne09W4qzyhuuC5HPNIWFB+to=;
	b=lvtdeTsnWCj9HpLo/9qSQ0CdZxXGSOPTH+hM1+0CHdv1ir+QjiX6npt/9St/v+KV
	cid74B9dCmDWa+0QrGfVODiCpePZ3nrnrC+8e8LahKXt9rwjxYKjfpPCe5zw/Og00Md
	xAN3akWW3zCvyXckecb/vpWlBJoluZ8GR+pn9SHg=
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple;
	s=3sarltvmakyemy6hhlzg72nk2tutdkaz; d=akat.info; t=1429418852;
	h=MIME-Version:Date:Message-ID:Subject:From:To:Content-Type;
	bh=4aSX303Wz3SQkY7WURCne09W4qzyhuuC5HPNIWFB+to=;
	b=Mxl0mMMteBkqnqF0z9JYUU7ppegM5EfMfVnEbFO68RWxoXOTsDwt2FcKJFI1+jtn
	Y27GF04m2QZK8Pms/Ngnso1RgkDWZjRDgfSXy5Dqf4RjjlhrnwMTWiDANQJ/8UEQgWU
	qC9qYDqpf6O/Y222UPzs8NyUPzI7OOUwnfVaWE94=
MIME-Version: 1.0
X-Received: by 10.112.146.97 with SMTP id tb1mr10764522lbb.12.1429418849889;
 Sat, 18 Apr 2015 21:47:29 -0700 (PDT)
Date: Sun, 19 Apr 2015 04:47:32 +0000
Message-ID: <0000014cd000bf2e-86b35367-3182-4404-bc4f-4e3e78b8a3fc-000000@email.amazonses.com>
Subject: SPF test after Miss SPF recorded
From: FROM SES <dummy@akat.info>
To: =?UTF-8?B?5riF5rC06KOV5pqB?= <shimizu.r.hiroaki@gmail.com>
Content-Type: multipart/alternative; boundary=047d7b3a85a0c8760505140c822b
X-SES-Outgoing: 2015.04.19-54.240.9.100
Feedback-ID: 1.us-east-1.f1xduSffVltn8OQQqUCReNketavtBO5v2BYoNwQkrC0=:AmazonSES

--047d7b3a85a0c8760505140c822b
Content-Type: text/plain; charset=UTF-8

SPF test after Miss SPF recorded

--047d7b3a85a0c8760505140c822b
Content-Type: text/html; charset=UTF-8

<div dir="ltr">SPF test after Miss SPF recorded<br></div>

--047d7b3a85a0c8760505140c822b--

参考URL

SPF(Sender Policy Framework)
http://salt.iajapan.org/wpmu/anti_spam/admin/tech/explanation/spf/
AmazonSESでのSPFとDKIM設定周り
http://qiita.com/moru3/items/bbc97a6bc9f156988cd8
AWS Black Belt Techシリーズ Amazon SES

SPFレコードを Amazon Route 53 に登録する
https://blog.apar.jp/linux/737/