ietf-asrg
[Top] [All Lists]

Re: [Asrg] antiphishing idea

2011-11-18 00:59:38
Maybe I'm missing something, but why would you want to do this rather
than a DKIM signature? �DKIM validates against the DNS, and protects
the whole message.

because I can have a proper configured domain, I can properly sign my
mails but I can send you an email with From: paypal.com header !
DKIM does not protect you against this !

I get the impression that you haven't read the very, very, very
extensive discussion on the DKIM list about how DKIM and/or ADSP do or
do not "protect" the address on the From: line, and what if anything
to do about it.  Please do so.  The archives are here:

http://mipassoc.org/pipermail/ietf-dkim/

It would also be worth taking a look at the archives of the earlier
MARID WG which also considered similar issues.  Its archives are here:

http://www.imc.org/ietf-mxcomp/mail-archive/

R's,
John

_______________________________________________
Asrg mailing list
Asrg(_at_)irtf(_dot_)org
http://www.irtf.org/mailman/listinfo/asrg