On Tue, Nov 15, 2022 at 4:10 AM Alessandro Vesely <ves...@tana.it> wrote:
> On Mon 14/Nov/2022 18:54:33 +0100 Wei Chuang wrote: > > On Mon, Nov 14, 2022 at 8:03 AM Alessandro Vesely <ves...@tana.it> > wrote: > > > >> BTW, we all know that mailing lists send one message at a time, doing > >> VERP for each subscriber. They can more easily include the recipient > in > >> the ARC signature. However, any spammer can do the same. > > > WRT to the ARC like proposed approaches, agreed that the spammer can > sign > > for each recipient as well. However then the spammer has identified > > themselves in the path, and some future path aware reputation systems > will > > be able to distinguish the spammer from benign forwarding flows. > > > If you can filter basing on a reliable reputation system, current ARC > seals are > enough already, aren't they? > > > Best > Ale > -- > > There's the risk that ARC gets replayed like DKIM, so it too needs modifications IMO. -Wei
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ Ietf-dkim mailing list Ietf-dkim@ietf.org https://www.ietf.org/mailman/listinfo/ietf-dkim