[dkim-dev] Choosing sets of headers to sign

Murray S. Kucherawy msk at sendmail.com
Fri Jan 12 14:40:14 PST 2007


On Fri, 12 Jan 2007, Dave Crocker wrote:
>> Our current implementation signs all headers by default, but you can select 
>> your own list as an override.  However, it will always include From, Date, 
>> Subject, Sender, Resent-From, Resent-Sender, and all Content-* headers 
>> regardless of the list you give it.  I came up with that set on my own.
>> 
>> I'd have to think about it for a while to recall why that particular list 
>> was chosen.
>
> It will probably be worth documenting that, for these discussion.  My 
> immediate reaction to the set is:  1) Originator address info, 2) timestampt, 
> and 3) root body structure lables.
>
> What I'm curious about is why Message-ID and Subject were not included.

Actually, Subject was in my original list.

Message-ID seems to be a good candidate as well.


More information about the dkim-dev mailing list