ietf-mailsig
[Top] [All Lists]

Re: DKIM: c=simple is aspirational

2005-07-17 20:54:38

On July 17, 2005 at 17:06, Ned Freed wrote:

Repeating what I've said in previous messages:

(1) Simple mode canonicalization needs to ignore header folding. It also
    probably should ignore header field name capitalization.

I agree.  Simple, as it is now, violates the semantics of RFC-2822.

(2) Language needs to be added to the effect that noswp mode SHOULD be used
    unless you know for sure that simple mode will work in your situation.

I believe you have suggested that simple not be the default, I'm
inclined to agree with that.  The default canonicalization algorithm
should be the one that provides most chance of success (of course,
with the acceptable level of security risk) so users will gain
confidence that the system works.

--ewh


<Prev in Thread] Current Thread [Next in Thread>