I suggest a new requirement:
- SSP must offer Highest Protection possible for Responsible
Originating domains (High Value or not) who desire 100%
exclusivity in their mail digital signatures which includes
- no expectation for tampering, and
- no expectation for 3rd party signatures, and
- an expectation that verifiers will follow
and honor this policy.
Even if one feels "it probably won't be used", there is no evidence
that it won't, therefore, the highest protection possible for
a mail digital signature must be made available, not excluded as a
possibility for usage.
---
HLS
_______________________________________________
NOTE WELL: This list operates according to
http://mipassoc.org/dkim/ietf-list-rules.html