Il giorno gio 25 lug 2024 alle ore 00:13 Scott Johnson <
[email protected]> ha scritto:

>
> > I'm mostly concerned about signatures for integrity check and sender
> > identity check. PGP and its derivatives, for example (here in Italy we
> > have the PEC system, a government standard to send emails with
> > integrated integrity check, it would be broken).
>
> Yay.  Now we are getting somewhere... a problem to be solved :)
>
> Let me first consider the problem for a bit.  I will come back to you
> after a think on this.  I am assuming you want this integrity check to
> pass when emailing Italian assets on Mars, or when assets on the Moon are
> emailing you, and mangling the payload so the user can't click $BADLINK is
> the issue.  How do these email systems interact with external entities
> email systems?  As normal?  What happens to the integrity check if you
> were to send an email to my MTA, which does not support it?
>

It interacts with other email system as a regular email (with some
signature attachments). A client may verify it if enabled, but some of the
characteristics would not work. A PEC email is meant to be sent from a PEC
email system to another PEC email system. It uses regular MTAs for
transport, anyway.

You can find a formal description on RFC 6109. Italy is working with other
European States to define a common European system based on it.


>
> You are suggesting that "leaving the current TLDs implicitly on Earth by
> default," as defined below, alleviates this problem?
>

Yes, since it eliminates the need to rewrite signed content.

-- 
Lorenzo Breda
_______________________________________________
DNSOP mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to