ietf-dkim
[Top] [All Lists]

[ietf-dkim] Re: Should DKIM drop SSP?

2005-10-26 19:15:40
Douglas Otis wrote:

Can you acknowledge the trade-off and defend this choice?

I'm more interested in your choice, DKIM without SSP.  Your
vision is some kind of reputation system, e.g. you know that
NNNNN are good guys.  Therefore you want to accept anything
that's really from NNNNN.  If it comes directy from one of
their mailouts you don't need DKIM, that situation is faster
handled by one of the HELO-checking protocols like CSV or SPF.

So your focus are "redirected" mails.  Wild and wonderful 251-
forwarding from who knows.  A DKIM signature _should_ survive
this torture, and then you can check that the source was NNNNN.

How do you catch the crap that only claims to be "from" NNNNN ?

                          Bye, Frank


_______________________________________________
ietf-dkim mailing list
http://dkim.org