ietf-dkim
[Top] [All Lists]

Re: [ietf-dkim] detecting header mutations after signing

2010-10-20 11:00:30


--On 19 October 2010 07:31:58 -0700 Michael Thomas <mike(_at_)mtcc(_dot_)com> 
wrote:

On 10/19/2010 06:18 AM, Wietse Venema wrote:
    valid signature + good signer
    + no suspicious unsigned content ->  good message

Has nobody learned that "good" signers from "good" authors
can still be evil? I mean come on, people, bot'd machines? This
is horrible advice.

s/unsigned/; and this works.

Mike

Well, everything's relative. If we can get to the point where a bot'd 
machine can only send email "From:" it's real owner, that'll be a huge 
improvement on the current situation. At that point, we can start to 
pressure the real owner into fixing their machine (say, by emailing them or 
their domain support, or by blacklisting their email)

-- 
Ian Eiloart
IT Services, University of Sussex
01273-873148 x3148
For new support requests, see http://www.sussex.ac.uk/its/help/


_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html

<Prev in Thread] Current Thread [Next in Thread>