Re: [Mailman-Developers] OpenPGP Mailman integration discussion [was: Re: GSoc - Requirement from Mentor to complete the project]

2013-05-28 Thread Stephen J. Turnbull
Daniel Kahn Gillmor writes: > The only way that a DKIM check would fail for the given attack, would be > if the DKIM included the To: and Cc: headers and the list was configured > to reject mail that either (a) failed or did not have a DKIM signature, > or (b) did not include the list's addres

Re: [Mailman-Developers] true virtual hosting patch for 2.1 on RHEL6

2013-05-28 Thread Mark Sapiro
On 05/28/2013 04:48 AM, Graham Leggett wrote: > > Here is another small issue, when VIRTUAL_HOST_OVERVIEW was switched off to > allow all virtual lists to appear on the same host, the host_name of the list > wasn't passed in the URL. The attached patch fixes this. > > diff -u -r mailman-2.1.12/

Re: [Mailman-Developers] OpenPGP Mailman integration discussion [was: Re: GSoc - Requirement from Mentor to complete the project]

2013-05-28 Thread Daniel Kahn Gillmor
On 05/26/2013 12:57 PM, Stephen J. Turnbull wrote: > > > sure, but the From: header is forgeable, right? so if Alice knows > > > that Bob was subscribed to list X in the past, and is subscribed to > > > list Y today, then she could dig up his old posts in list X, and > > > forward them (From:

Re: [Mailman-Developers] true virtual hosting patch for 2.1 on RHEL6

2013-05-28 Thread Graham Leggett
On 27 May 2013, at 5:21 PM, Mark Sapiro wrote: > Fix accepted and committed to the branch at > . > > Thank you. Here is another small issue, when VIRTUAL_HOST_OVERVIEW was switched off to allow all virtual lists to appear on the same host, the