ietf-asrg
[Top] [All Lists]

Re: [Asrg] RFC5451 Re: who gets the report, was We really don't need

2010-02-10 06:07:27


--On 10 February 2010 09:06:13 +0100 Alessandro Vesely <vesely(_at_)tana(_dot_)it> wrote:

On 09/Feb/10 23:31, Murray S. Kucherawy wrote:
 Could the MDA add a DKIM signature for the authentication results
 header?

 Yes, it could. However, removal of the field on forwarding would then
 break the signature.

True, but you don't have to do that.

But retention is only allowed for trusted internal MTAs.

Right, but the MDA is, by definition (a) not forwarding (it's putting a message into a mailstore) and (b) a trusted internal MTA. Isn't it?

I guess there's an issue if the user decides to forward the message.

Since the signature only covers the abuse field, it's not unreasonable to remove the dkim signature when removing the authentication results field.


--
Ian Eiloart
IT Services, University of Sussex
01273-873148 x3148
For new support requests, see http://www.sussex.ac.uk/its/help/
_______________________________________________
Asrg mailing list
Asrg(_at_)irtf(_dot_)org
http://www.irtf.org/mailman/listinfo/asrg

<Prev in Thread] Current Thread [Next in Thread>