[ietf-dkim] Re: Replay attacks and ISP business models

John R Levine johnl at iecc.com
Mon Aug 8 06:38:30 PDT 2005


> Class 3 (`full` DKIM) - Signed (DKIM) mail with replay/destination
> protection. Here, the destination is signed (or just a hash of the
> destination, possibly using hash tree, for privacy and efficiency).
> Mailing lists and other forwarding services will need special
> DKIM-enhancements to provide this DKIM service.

Eeewww.  When the SPF crowd said that every mail forwarder in the world
would have to be upgraded to rewrite the envelope to work around a flaw in
SPF's design, we all threw rotten tomatoes at them.

Surely you do not want to send DKIM down the same road.

Regards,
John Levine, johnl at iecc.com, Primary Perpetrator of "The Internet for Dummies",
Information Superhighwayman wanna-be, http://iecc.com/johnl, Mayor
"I dropped the toothpaste", said Tom, crestfallenly.


More information about the ietf-dkim mailing list