[ietf-dkim] Output summary - proposing ODID "Originating Domain Identity"

Murray S. Kucherawy msk at cloudmark.com
Wed May 4 11:34:14 PDT 2011


> -----Original Message-----
> From: Michael Thomas [mailto:mike at mtcc.com]
> Sent: Wednesday, May 04, 2011 10:54 AM
> To: Murray S. Kucherawy
> Cc: dcrocker at bbiw.net; ietf-dkim at mipassoc.org
> Subject: Re: [ietf-dkim] Output summary - proposing ODID "Originating Domain Identity"
> 
> > The advice that a verifier can ignore the "l=" tag was in RFC4871, so
> > copying it to RFC4871bis doesn't seem like a problem to me.
> 
> You can't ignore the *tag*. That's the normative change. Whether you
> ignore the *output* is another matter. But of course you can't ignore
> the output because l= is "internal". Yet another problem.

So the issue is that someone might read it as "leave l=<value> out of what you feed to the hash" versus "hash it, but ignore what it's telling you"?

If so, I agree, we should fix that.




More information about the ietf-dkim mailing list