Ok, I should have worded it as "and that only has a chance of working on a local machine"
once you go to another machine, you no longer 'know' anything about what is really generating the message (unless you have crytographic authentication to the sending program, and event that only proves that the sender has access to the key)