ietf-dkim
[Top] [All Lists]

Re: Fwd: Re: [ietf-dkim] Re: from'less 2822 messages

2008-01-28 10:00:40
At 11:54 AM +0000 1/28/08, Charles Lindsey wrote:
I think all you need, as Frank has pointed out, is a security
consideration to the effect that

"Verifiers should be aware that Bad Guys may attempt to subvert the
intentions of SSP by submitting messages that are non-compliant with RFC
2822 (for example by using empty From headers, mutiple From headers, Etc
{i.e. list a few examples, but not too may }).

That seems like a good resolution to this long thread.

--Paul Hoffman, Director
--Domain Assurance Council
_______________________________________________
NOTE WELL: This list operates according to http://mipassoc.org/dkim/ietf-list-rules.html