[ietf-dkim] Draft summary of SSP functionality

Michael Thomas mike at mtcc.com
Wed Dec 5 10:18:27 PST 2007


Dave Crocker wrote:
>    2. Signed message.  When a receiver gets a message that is signed, 
> but which has the signature's "i=" that is different from the domain 
> name in the (first) From field address, perform the SSP query, described 
> in step 1. The result of this evaluation is expected to override the 
> reputation assessment of the actual signer.

Override? No. That is the receiver's decision, and SSP is silent on
that. Some receivers may choose to do that, some may use it as data
in some filtering calculus, others may ignore it altogether. I'm
firmly in the "data" camp which makes it hard for me to understand
why this is such a difficult concept.

		Mike


More information about the ietf-dkim mailing list