ietf-dkim
[Top] [All Lists]

[ietf-dkim] Re: the more reliable signature fallacy

2008-01-24 05:27:52
John L wrote:
 
This is the exact problem for PRA in the SIDF implementation.
 
Quite right.  What would be the point in inventing yet another 
authentication scheme that fails in all the same places that
SIDF and SPF do?

SPF has no problem with non-standard mailing list behaviour, it
doesn't look at (2)822 header fields From / Sender / Resent-*.

SSP looks at the header, unsurprisingly running into known PRA-
difficulties.  A public statement (SSP) about how From-addresses
are used *must* be cumbersome for legit e-mail uses not under
the control of the publisher (mailing lists, secy-at-shost, 
resend, multi-author above a limit decreed here, likely more).  

Not the same set of issues as for SPF, SPF "only" outlaws 1123
5.3.6(a) forwarding.  SSP might end up with outlawing more mail
features, and SSP can't claim that they were "always wrong".

 Frank

_______________________________________________
NOTE WELL: This list operates according to
http://mipassoc.org/dkim/ietf-list-rules.html