[ietf-dkim] Re: requrements-01// security concerns regarding
policy domain designations rather than delegations
Douglas Otis
dotis at mail-abuse.org
Tue Sep 19 10:36:00 PDT 2006
On Sep 19, 2006, at 10:16 AM, Douglas Otis wrote:
> > To avoid abusive DSNs to innocent bystanders you always need a
> verified Return-Path. Minimally you've to trust that it's no
> nonsense (e.g. if it came from a source where that's hopefully
> guaranteed).
>
> When the 2822.From is associated with that of the signing domain
> via DKIM-MF policy, the 2821.Mail-From is assured and can be safely
> used in a DSN.
Correction:
When the 2821.Mail_From is associated with that of the signing domain
via DKIM-MF policy, the 2821.Mail_From is assured and can be safely
used in a DSN.
-Doug
More information about the ietf-dkim
mailing list