ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] sophistry is bad, was Data integrity claims

2010-10-18 14:04:47
On Monday, October 18, 2010 02:19:06 pm Murray S. Kucherawy wrote:
-----Original Message-----
From: ietf-dkim-bounces(_at_)mipassoc(_dot_)org
[mailto:ietf-dkim-bounces(_at_)mipassoc(_dot_)org] On Behalf Of Scott 
Kitterman
Sent: Saturday, October 16, 2010 11:56 AM
To: ietf-dkim(_at_)mipassoc(_dot_)org
Subject: Re: [ietf-dkim] sophistry is bad, was Data integrity claims

The current DKIM spec does not answer these questions and easily
permits protecting very little of the message.  Almost certainly too
little to ensure the protection you assert.

One can also point a gun at ones own head.  That doesn't make a gun a
suicide device of no value for anything else.  The spec does permit
people to do silly things, but so what.

Doesn't this statement advocate for informative advice rather than
normative requirements?

I'm OK with that, but the informative advice needs to be in security 
considerations, IMO.

Scott K
_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html

<Prev in Thread] Current Thread [Next in Thread>