Further processing of authres-id

From: SM <sm_at_resistor.net>
Date: Fri, 30 Apr 2010 04:27:58 -0700

Hello,

Currently, OpenDKIM only verifies that the authres-id from external
hosts is not the one it is using. What if we add further processing
for the authres-id? As a start, we could collect the authres-id we
are seeing (assuming that they have been DKIM signed), and the domain
that has a DKIM pass. The next step would be to have a "policy list"
where we can use that information to override a rejection.

That reminds me that we are not signing the Authentication-Results:
header for this mailing list. Shouldn't we do that as part of resigning?

Regards,
-sm
Received on Fri Apr 30 2010 - 11:28:19 PST

This archive was generated by hypermail 2.3.0 : Mon Oct 29 2012 - 23:32:52 PST