ietf-mailsig
[Top] [All Lists]

Re: Narrow the scope: no new email signature protocol

2004-10-06 07:28:04

Andrew,

On Wed, 6 Oct 2004 09:59:39 -0400, Andrew Newton wrote:
 Based on the descriptions given by James and George, it seems
 I could implement an S/MIME solution with dig, reformail, and
 openssl using a simple script.

that would depend on what you dug for, how you reformed the mail 
and... oh, yeah.  ssl is hop-by-hop rather than end-to-end.  i do 
not understand how you think ssl would be relevant to this.

in any event, please point to the technical specifications for 
the data and formats that these guys would use, for supporting a 
MASS service.

please also attend to the points that John Callas made.

And my own list:

        a) protect headers
        b) use domain-scope identification
        c) DNS-based key validation (or acquisition)
        d) header-based attribute encoding

seems a bit underserved by your posting.  you have noted that 
s/mime has a specification for handling item a).  as for the 
other 3 items, i believe you have acknowledged that further 
specification is needed.

d/
--
Dave Crocker
Brandenburg InternetWorking
+1.408.246.8253
dcrocker(_at_)(_dot_)(_dot_)(_dot_)
brandenburg.com



<Prev in Thread] Current Thread [Next in Thread>