Doug,
Douglas Otis wrote:
If an MTA is forwarding messages, and these forwarding agents
are known, then bad actors sending messages to forwarded accounts may be
delighted to find their messages are subsequently rejected due to an
expired signature by some down stream MTA. : (
Is that right? Isn't it rather the case that a bad "x=" value causes
signature validation to fail, which is the same as the message not
having been signed. So a signature expiry failure doesn't mean
message rejection, same as if the signature check failed because
the message was mangled.
Stephen.
_______________________________________________
NOTE WELL: This list operates according to
http://mipassoc.org/dkim/ietf-list-rules.html