ietf-mailsig
[Top] [All Lists]

Re: In response to Housley-mass-sec-review

2005-03-06 09:59:28


On Mar 6, 2005, at 10:57 AM, Hallam-Baker, Phillip wrote:

Nah, why not just do a hierarchical query?

Base64(SHA1(messageID)).Base64(sha1(userID))._revocation.example.com


Standard DNS config can then be used to revoke the user or the individual
message:

*.Base64(sha1(userID))._revocation.example.com TXT "status=revoked
reason=spam"

I was thinking the same thing. Though it need not be codified in the standard. The identifier just needs to conform to DNS label syntax, be it one label or many. That way Yahoo can use this type of scheme and smaller mail systems can use simpler schemes.

-andy


<Prev in Thread] Current Thread [Next in Thread>