ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] draft-ietf-dkim-mailinglists-02 review

2010-09-10 14:04:28
On Fri, 03 Sep 2010 15:15:37 +0100, Hector Santos <hsantos(_at_)isdg(_dot_)net> 
wrote:

I think you need to better appreciate and understand how fundamental
the "Message" From field for any forms of communications and/or mail
networks is.  It would be a radical change to open up this door and
"Pandora box" to make it the norm and mindset that a From: is
unreliable. Not saying it is not prone to abusive, but fundamentally,
when people believe in the message, they also make that natural
trusted tie to the author of the message.

Yes, but nobody is trying to change that. We seem to be agreed that what a  
mailing list sends is, from some POV, a "new" message, and so logically a  
new "From:" is not wholly out of order.

   From: DKIM POST MASTER <postmaster(_at_)mipassoc(_dot_)org>

or

   From: DKIM POST MASTER ON BEHALF OF XYZ 
<postmaster(_at_)mipassoc(_dot_)org>

Well the 2nd one is better, and it would be better still to encode the  
same stuff within the address (e.g by a %-hack).

Since MUAs usually display the From, but often not much else, then it is  
reasonable for it to contain all useful information about where it came  
from.

So it would be useful to know who was the original author, but it is also  
useful to know that it passed through (and was modified by) the MLM.


I guess the goal would be to make the resigner a 1st party DKIM
signature with the From  domain being mipassoc.org.

Yes, especially if he has just destroyed some valid signaturethat was  
there previously.

Even if the MLM was allowed to do this for list of this type, do we
now also recommend that MIPASSOC.ORG have a ADSP policy?

Whether and how to do such things is at the discretion of the MLM. He does  
whatever will make his list function smoothly. All we need is some  
generally accepted conventions so that we do not get arbitrary  
differences. An informational document is a suitable way to propose such  
conventions. Later on it might be elevated to a BCP if it becomes widely  
adopted.


-- 
Charles H. Lindsey ---------At Home, doing my own thing------------------------
Tel: +44 161 436 6131                       
   Web: http://www.cs.man.ac.uk/~chl
Email: chl(_at_)clerew(_dot_)man(_dot_)ac(_dot_)uk      Snail: 5 Clerewood Ave, CHEADLE, SK8 3JU, U.K.
PGP: 2C15F1A9      Fingerprint: 73 6D C2 51 93 A0 01 E7 65 E8 64 7E 14 A4 AB A5
_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html

<Prev in Thread] Current Thread [Next in Thread>