It appears that Vsevolod Stakhov via mailop <vsevo...@rspamd.com> said:
>> I agree that would've been better than ARC.  However, it'd still need to 
>> know which recipients are mailing list supporting DKIMv2 and operate 
>> accordingly. ...

Not necessarily. On a small system you could put fowarding signatures
on all the mail you send and hope, probably correctly, that the people
to whom your users send mail are unlikely to do malicious things with
it.

>If we ignore unknown tags safely then this extension can be introduced 
>without any additional issues with the compatibility I suppose.

If your DKIM verifier doesn't ignore unknown tags, it's not going to
work.  People add random tags all the time.  I presume you noticed that
my draft changed the v= tag so that signatures that depend on forwarding
a v=1,tag that is unknown to verifiers that don't implement the draft so
they'll consider the signature invalid.

R's,
John
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to