ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] NEW ISSUE: Limit the application of SSP to unsigned messages

2007-12-10 12:58:44
Eliot Lear wrote:
Dave's concern is over the
definition of the message originator.  If a reputation check of some
form is done on a valid signature and found to be positive, I see no
reason to continue the SSP process.

I certainly agree that if this isn't clear it should be made to be clear.
But what's unclear to me is that it has anything to do with the text
in the draft or whether it's some people's preconceived notions. We
can't do much about the latter, but trying to look at this from the
standpoint of a naive implementor would be helpful. In particular,
we need to be extremely clear that when you run SSP (before,
after, concurrently) with respect to any reputation or any other
mechanism (other than dkim verification) is out of scope of SSP.

      Mike
_______________________________________________
NOTE WELL: This list operates according to http://mipassoc.org/dkim/ietf-list-rules.html

<Prev in Thread] Current Thread [Next in Thread>