ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] New Issue: threats-01 over prescriptive about key delegation

2006-03-09 08:34:40
On Thu, Mar 09, 2006 at 03:09:36PM +0000, Stephen Farrell allegedly wrote:

4.1.2 says that delegates should generate key pairs and should send
signed public keys to the domain owner. There are a couple of problems
with this, if its really meant seriously.

Firstly, some domains might quite reasonably decide to do key

Second issue is that this document isn't the right one to specify
such solutions.

However, there's an easy fix: s/should/could/ twice and
s/minimize/reduce/ makes it all ok IMO.

Right. One even wonders whether this is specification text or simply
non-normative suggestions on possible strategies. I don't see rfc2821
offering the mechanics on installing an MTA. Do other pub-key related
specs delve into deployment?


Mark.
_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html