ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] Re: 3rd party signing

2006-07-28 10:01:59

On Jul 28, 2006, at 9:17 AM, Michael Thomas wrote:

John L wrote:

It may well be true that you only sign third party mail, but I still don't understand what use a recipient might make of that information.

John,

This is about policy related to the OA and not the signer. The OA could indicate that they never sign for themselves. This information would allow rejection of bogus and invalid signatures. Perhaps this domain signs for others, but that is not germane to OA policy.)


Consider what I believe Y! does in their MUA: if it's got a valid signature from isp.com with a From: foo(_at_)customer(_dot_)com, it doesn't get a nice little message saying that Y! believe it came from customer.com. Thus the outsourced mail will not be treated on a par with mail signed on behalf of the domain.

Mike,

Agreed. One gets what they pay for so to speak. Being able to associate a foreign From with the signing domain should improve acceptance and provide a commensurate reduction in related support calls however.

-Doug _______________________________________________ NOTE WELL: This list operates according to http://mipassoc.org/dkim/ietf-list-rules.html