ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] Not exactly not a threat analysis

2005-08-23 10:44:26
The primary deployment scenario for DKIM is to do the signing on the
submission server, so the signature doesn't necessarily identify the
message's author. I'd say the tag you want has at least three settings:
author / submission server / re-sender

A submission server might be in a good position to sign a message on behalf of the submitter, but it seems awkward at best to expect a submission server to distinguish between original messages and re-sent messages. And at least at this point, I don't see any particular reason to distinguish submission from re-submission.

; and perhaps also smart host /forwarder / list server. Etc. etc.

I also don't see how it's necessary or particularly desirable for the signature to distinguish between different kinds of (re)sending.

Keith
_______________________________________________
ietf-dkim mailing list
http://dkim.org