[ietf-dkim] Seriously.

Jon Callas jon at callas.org
Wed Jan 23 02:22:50 PST 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

>
>
> 1. Perform SSP checks on the domains of all From addresses in the  
> message, with the exception of addresses having valid Author  
> Signatures.  If any of the checks result in a Non-Compliant  
> (formerly Suspicious) result, then the message is considered Non- 
> Compliant.
>
> or
>
> 2. In the case of multiple From: addresses in the message, and the  
> domain part of one of the addresses matches the domain part of the  
> Sender address, then perform an SSP check on that address unless it  
> has a valid Author Signature.  If the Sender header field does not  
> match the domain of one of the from address or is missing [violating  
> 2822], revert to alternative #1.
>
> There are some other variations, but I think these are the two main  
> proposals.
>

But there's also

3. Throw your hands up in the air and let non-DKIM software squint at  
the message.

	Jon


-----BEGIN PGP SIGNATURE-----
Version: PGP Universal 2.6.3
Charset: US-ASCII

wj8DBQFHlxWCsTedWZOD3gYRAlHKAJ4+bQ++MmXDM6r26ZVOTfKheS7TRgCfTWwQ
iW3lMae8kAyDU1Lz4XNhy4U=
=rkly
-----END PGP SIGNATURE-----


More information about the ietf-dkim mailing list