spf-discuss
[Top] [All Lists]

Re: [spf-discuss] Presentation on e-mail sender authentication

2007-05-10 16:44:09

Small error - DK and DKIM will not protect Sender header field, at most
they may provide some protection for From but even that is debatable
considering most want as weak SSP as possible.

Also PGP and S/MIME are probably not well explained, and some small
issues there, i.e. public key exchanges are all stardardized, its
just completely different way of exchanges, i.e. signed certificate
from trusted root for S/MIME and verification of chain of trust for PGP.
Not widely deployed is also wrong (they are both quite widely deployed
and over 95% of currently used MUA support one or another), but not
widely used due to perceived complexity would be entirely correct.

Could also have been good to mention at the end to EU audience that
strong privacy laws spammers and should be done only with strong laws
regarding abuse of domains including action by domain registrars
(which is currently not the case).

Otherwise quite good general email authentication presentation.

On Thu, 10 May 2007, Julian Mehnle wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi all,

on Wednesday I gave a presentation at the Technical University of Munich
(TUM) on the general concept of e-mail sender authentication and the
specifics of a few authentication methods.

These are the slides:

 http://www.mehnle.net/papers/e-mail-sender-authentication-slides.en.pdf (0.7MB)
 http://www.mehnle.net/papers/e-mail-sender-authentication-slides.en.odp (1.9MB)
 http://www.mehnle.net/papers/e-mail-sender-authentication-slides.en.ppt (2.7MB)

Feel free to use them as a basis for new presentations (license: CC BY-SA 
3.0[1]).

References:
1. http://creativecommons.org/licenses/by-sa/3.0/

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFGQ6h0wL7PKlBZWjsRAg8yAJ9yOy4eGteheDZwjcW0KV69iZXMRwCg0AgH
RmUsyKcwfgYtGrRBmgGmkCo=
=Y5u0
-----END PGP SIGNATURE-----

-------------------------------------------
-----------------------------------------------------------------------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your
subscription,
please go to http://v2.listbox.com/member/?list_id=735
Powered by Listbox: http://www.listbox.com

-------------------------------------------
-----------------------------------------------------------------------
Sender Policy Framework: http://www.openspf.org/
Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your
subscription,
please go to http://v2.listbox.com/member/?list_id=735
Powered by Listbox: http://www.listbox.com

<Prev in Thread] Current Thread [Next in Thread>