[ietf-dkim] Re: Responsibility vs. Validity

Frank Ellermann nobody at xyzzy.claranet.de
Wed Nov 28 04:36:32 PST 2007


Douglas Otis wrote:

> The scope parameter found in TPA-SSP allows this assertion
> to be made while also allowing stronger assertion to be
> made by a sub-domain signature, for example.

That's fine for your draft, but "overview" and friends are
about what Hector called the "batteries not included" DKIM,
pure DKIM without SSP.

Similar example:  Claiming that SPF allows to indicate that
a domain is never used as RHS in sender addresses would go
too far, "v=spf1 -all" is about HELO identities and the RHS
of envelope sender addresses, the domain could be still used
as RHS of a say "purported responsible address" (PRA) under
some conditions explained in 2821bis/2822upd/4406.

 Frank



More information about the ietf-dkim mailing list