[ietf-dkim] ADSP Informative Note on parent domain signing

Jim Fenton <fenton@cisco.com> Tue, 07 April 2009 00:11 UTC

Return-Path: <ietf-dkim-bounces@mipassoc.org>
X-Original-To: ietfarch-ietf-dkim-archive@core3.amsl.com
Delivered-To: ietfarch-ietf-dkim-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 052773A6CA9 for <ietfarch-ietf-dkim-archive@core3.amsl.com>; Mon, 6 Apr 2009 17:11:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.511
X-Spam-Level:
X-Spam-Status: No, score=-6.511 tagged_above=-999 required=5 tests=[AWL=0.088, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id e-0Z5UHw9WO5 for <ietfarch-ietf-dkim-archive@core3.amsl.com>; Mon, 6 Apr 2009 17:11:37 -0700 (PDT)
Received: from sbh17.songbird.com (mail.mipassoc.org [IPv6:2001:470:1:76:0:ffff:4834:7146]) by core3.amsl.com (Postfix) with ESMTP id B8CBC3A6D36 for <ietf-dkim-archive@ietf.org>; Mon, 6 Apr 2009 17:11:33 -0700 (PDT)
Received: from sbh17.songbird.com (sbh17.songbird.com [127.0.0.1]) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id n370AZJV006672; Mon, 6 Apr 2009 17:10:41 -0700
DKIM-Signature: v=1; a=rsa-sha1; c=simple/simple; d=mipassoc.org; s=k00001; t=1239063057; bh=52grhYT3LNGGHRaKyx1GsL7niGU=; h=Message-ID:Date: From:MIME-Version:To:Subject:List-Id:List-Unsubscribe:List-Archive: List-Post:List-Help:List-Subscribe:Content-Type: Content-Transfer-Encoding:Sender; b=FQ+1x4FrkDlWPXuiAShpb+W1wMhI9P A6hT7wvGD7vJbLvVu+ImAmNCNMuVLK+o9JVFcDvIny2dT+yqh3fvelhmB9OCoFSpRVG ogdy33L+aU2k5aRFeZTiITkdRBD/1Wjc4zAfEE5DqAIAxbo3ezDgCLFCnepx26oNfk1 GG/PvMQ=
Received: from sj-iport-6.cisco.com (sj-iport-6.cisco.com [171.71.176.117]) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id n370ATO4006662 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=FAIL) for <ietf-dkim@mipassoc.org>; Mon, 6 Apr 2009 17:10:34 -0700
Authentication-Results: sbh17.songbird.com; dkim=pass (768-bit key) header.i=fenton@cisco.com
X-IronPort-AV: E=Sophos;i="4.39,333,1235952000"; d="scan'208";a="281443330"
Received: from sj-dkim-2.cisco.com ([171.71.179.186]) by sj-iport-6.cisco.com with ESMTP; 06 Apr 2009 23:36:50 +0000
Received: from sj-core-2.cisco.com (sj-core-2.cisco.com [171.71.177.254]) by sj-dkim-2.cisco.com (8.12.11/8.12.11) with ESMTP id n36Nao9A023595 for <ietf-dkim@mipassoc.org>; Mon, 6 Apr 2009 16:36:50 -0700
Received: from xbh-sjc-231.amer.cisco.com (xbh-sjc-231.cisco.com [128.107.191.100]) by sj-core-2.cisco.com (8.13.8/8.13.8) with ESMTP id n36NaoAp013862 for <ietf-dkim@mipassoc.org>; Mon, 6 Apr 2009 23:36:50 GMT
Received: from xfe-sjc-211.amer.cisco.com ([171.70.151.174]) by xbh-sjc-231.amer.cisco.com with Microsoft SMTPSVC(6.0.3790.1830); Mon, 6 Apr 2009 16:36:49 -0700
Received: from dhcp-171-71-97-185.cisco.com ([171.71.97.185]) by xfe-sjc-211.amer.cisco.com with Microsoft SMTPSVC(6.0.3790.1830); Mon, 6 Apr 2009 16:36:49 -0700
Message-ID: <49DA9211.7050001@cisco.com>
Date: Mon, 06 Apr 2009 16:36:49 -0700
From: Jim Fenton <fenton@cisco.com>
User-Agent: Thunderbird 2.0.0.21 (Macintosh/20090302)
MIME-Version: 1.0
To: IETF DKIM WG <ietf-dkim@mipassoc.org>
X-Enigmail-Version: 0.95.7
X-OriginalArrivalTime: 06 Apr 2009 23:36:49.0651 (UTC) FILETIME=[8E98D430:01C9B710]
Authentication-Results: sj-dkim-2; header.From=fenton@cisco.com; dkim=pass ( sig from cisco.com/sjdkim2002 verified; );
X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.0 (sbh17.songbird.com [127.0.0.1]); Mon, 06 Apr 2009 17:10:57 -0700 (PDT)
X-Greylist: Delayed for 00:33:39 by milter-greylist-4.0 (sbh17.songbird.com [72.52.113.70]); Mon, 06 Apr 2009 17:10:34 -0700 (PDT)
Subject: [ietf-dkim] ADSP Informative Note on parent domain signing
X-BeenThere: ietf-dkim@mipassoc.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF DKIM Discussion List <ietf-dkim.mipassoc.org>
List-Unsubscribe: <http://mipassoc.org/mailman/listinfo/ietf-dkim>, <mailto:ietf-dkim-request@mipassoc.org?subject=unsubscribe>
List-Archive: <http://mipassoc.org/pipermail/ietf-dkim>
List-Post: <mailto:ietf-dkim@mipassoc.org>
List-Help: <mailto:ietf-dkim-request@mipassoc.org?subject=help>
List-Subscribe: <http://mipassoc.org/mailman/listinfo/ietf-dkim>, <mailto:ietf-dkim-request@mipassoc.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: ietf-dkim-bounces@mipassoc.org
Errors-To: ietf-dkim-bounces@mipassoc.org

There remains some disagreement on whether the "informative note"
contained in the last paragraph of the text I proposed on March 27
should appear in the ADSP draft.  The note said:

> Informative Note:  ADSP is incompatible with DKIM signing by parent
> domains described in section 3.8 of [RFC4871] in which a signer uses 
> "i=" to assert that a parent domain is signing for a subdomain.
>   
This would replace the Note in draft-ietf-dkim-ssp-09, section 2.7.

Thus far, I feel it should be included and John Levine and Dave Crocker
feel it shouldn't.  May we have guidance from others in the Working
Group, please?

-Jim


_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html