ietf-dkim
[Top] [All Lists]

[ietf-dkim] Ticket #20: signature practices

2011-04-26 18:44:59
I agree with Dave's changes, except that you need to sign Content-Type: if 
you use l=.  Otherwise it's trivial to replace the entire visible contents 
of the message by changing the MIME section separator, and adding new 
stuff at the end.

Regards,
John Levine, johnl(_at_)iecc(_dot_)com, Primary Perpetrator of "The Internet 
for Dummies",
Please consider the environment before reading this e-mail. http://jl.ly
_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html