[ietf-dkim] Seriously.
Jon Callas
jon at callas.org
Wed Jan 23 02:22:50 PST 2008
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
>
>
> 1. Perform SSP checks on the domains of all From addresses in the
> message, with the exception of addresses having valid Author
> Signatures. If any of the checks result in a Non-Compliant
> (formerly Suspicious) result, then the message is considered Non-
> Compliant.
>
> or
>
> 2. In the case of multiple From: addresses in the message, and the
> domain part of one of the addresses matches the domain part of the
> Sender address, then perform an SSP check on that address unless it
> has a valid Author Signature. If the Sender header field does not
> match the domain of one of the from address or is missing [violating
> 2822], revert to alternative #1.
>
> There are some other variations, but I think these are the two main
> proposals.
>
But there's also
3. Throw your hands up in the air and let non-DKIM software squint at
the message.
Jon
-----BEGIN PGP SIGNATURE-----
Version: PGP Universal 2.6.3
Charset: US-ASCII
wj8DBQFHlxWCsTedWZOD3gYRAlHKAJ4+bQ++MmXDM6r26ZVOTfKheS7TRgCfTWwQ
iW3lMae8kAyDU1Lz4XNhy4U=
=rkly
-----END PGP SIGNATURE-----
More information about the ietf-dkim
mailing list