[ietf-dkim] The key record upgrade attack

Paul Hoffman phoffman at proper.com
Fri Aug 4 09:23:17 PDT 2006


At 8:38 AM -0700 8/4/06, Douglas Otis wrote:
>During a transition, it would be important to communicate what will 
>be offered and what has been deprecated.  Then these options MUST be 
>available or the related signatures MUST be ignored.

The SSP document *cannot* change the way implementers of the -base 
document process signatures. "MUST be ignored" changes the logic of 
-base.


More information about the ietf-dkim mailing list