[ietf-dkim] Deployment Scenario 7: Cryptographic Upgrade and Downgrade Attacks

Dave Crocker dhc at dcrocker.net
Sun Feb 25 14:01:26 PST 2007




>> So is this still a real problem for DKIM?
> 
> Yes, it still is, because we didn't say (and should not have said) "MUST 
> NOT implement any other signature algorithm".


How is that a problem?

d/

-- 

   Dave Crocker
   Brandenburg InternetWorking
   bbiw.net


More information about the ietf-dkim mailing list