Re: [Ietf-dkim] Rechartering

Laura Atkins <laura@wordtothewise.com> Mon, 28 November 2022 18:32 UTC

Return-Path: <laura@wordtothewise.com>
X-Original-To: ietf-dkim@ietfa.amsl.com
Delivered-To: ietf-dkim@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 42A33C1526E6 for <ietf-dkim@ietfa.amsl.com>; Mon, 28 Nov 2022 10:32:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.096
X-Spam-Level:
X-Spam-Status: No, score=-7.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=wordtothewise.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ji5ZxVmBei90 for <ietf-dkim@ietfa.amsl.com>; Mon, 28 Nov 2022 10:32:55 -0800 (PST)
Received: from mail.wordtothewise.com (mail.wordtothewise.com [104.225.223.158]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EF0DAC14F72C for <Ietf-dkim@ietf.org>; Mon, 28 Nov 2022 10:32:54 -0800 (PST)
Received: from smtpclient.apple (unknown [37.228.236.130]) by mail.wordtothewise.com (Postfix) with ESMTPSA id 314AD9F21A; Mon, 28 Nov 2022 10:32:53 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=wordtothewise.com; s=aardvark; t=1669660373; bh=ezuV2LyctkVRe9xy8Mk1ep2wFxN4HQZUvnywH/MRiyQ=; h=From:Subject:Date:In-Reply-To:Cc:To:References:From; b=skrPDZif+cIpC9gq2h+0/8CzfM7QUxmKLASVTJIZIP7K83vvsAY//tg2J3yd+rBUR nBukoVDPrbpHNVh8D1khE9j3XSd+UcXsdxHrXdccfzmZ5T5sN0QP2u6VG2hEY8Cws7 axpvDiAN2xeT+soRA91SjBfTZ4uscDrJS8lWHWO0=
From: Laura Atkins <laura@wordtothewise.com>
Message-Id: <BEDC9AEB-1DB3-441E-A841-79497524CB5F@wordtothewise.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_D3F2FC1F-5A11-4361-ADA0-CA4AAD86F58B"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3696.100.31\))
Date: Mon, 28 Nov 2022 18:32:49 +0000
In-Reply-To: <CAL0qLwZQAtLyDoAXgFoaNmsm3CCrLESr=P8foWe_YybWmC=PjA@mail.gmail.com>
Cc: Ietf-dkim@ietf.org
To: "Murray S. Kucherawy" <superuser@gmail.com>
References: <CAL0qLwZQAtLyDoAXgFoaNmsm3CCrLESr=P8foWe_YybWmC=PjA@mail.gmail.com>
X-Mailer: Apple Mail (2.3696.100.31)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf-dkim/z5s6qh5iZ2kRpJ57jC-dfpUzZAY>
Subject: Re: [Ietf-dkim] Rechartering
X-BeenThere: ietf-dkim@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF DKIM List <ietf-dkim.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf-dkim>, <mailto:ietf-dkim-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf-dkim/>
List-Post: <mailto:ietf-dkim@ietf.org>
List-Help: <mailto:ietf-dkim-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-dkim>, <mailto:ietf-dkim-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 28 Nov 2022 18:32:59 -0000

I support this.

If the consensus is “that specific parts of the message have not been altered” should be added I’d support that, too. 

laura 



> On 28 Nov 2022, at 02:30, Murray S. Kucherawy <superuser@gmail.com> wrote:
> 
> Hi folks,
> 
> Area Director hat on here:
> 
> The discussion Barry kicked off has been interesting, but it has strayed (and mea culpa, in part, because the material is interesting) from the work of discussing a charter.
> 
> I've set the stage for re-chartering in the system, and now we need some charter text.  Dave and Barry submitted text, which I've synthesized into what's below.  Let's keep this thread just to discussion the charter text; if you want to continue to debate the technical solutions or problem space, please start other threads or reply to the other existing ones.
> 
> Here's my run at a charter; please provide suggestions or comments, or tell us if you think it's ready to go.  It's a variant of Barry's version with parts of Dave's merged in.  I've kept the list of candidate documents as a starting point; the WG doesn't actually have to use any of them if that's where consensus lands.
> 
> But let's figure out consensus on a charter before we try to hammer out consensus on solutions.
> 
> -MSK
> 
> --
> 
> Domain Keys Identified Mail (DKIM, RFC 6376) defines a mechanism for
> using a digital signature to associate a domain identity with an email
> message in a secure way, and to assure receiving domains that the message has
> not been altered since the signature was created.  Receiving systems
> can use this information as part of their message-handling decision.
> This can help reduce spam, phishing, and other unwanted or malicious
> email.
> 
> A DKIM-signed message can be re-posted, to a different set of recipients, without
> disturbing the signature's validity.  This can be used to confound the engines that
> identify abusive content.  RFC 6376 identified a risk of these "replay" attacks, but
> at the time did not consider this to be a problem in need of a solution.  Recently,
> the community has decided that it has become enough of a problem to warrant being revisited.
> 
> The DKIM working group will produce one or more technical specifications that
> describe the abuse and propose replay-resistant mechanisms that are compatible
> with DKIM's broad deployment.  The working group may produce documents describing
> relevant experimental trials first.
> 
> Current proposals include the following drafts:
> 
>  - draft-bradshaw-envelope-validation-extension-dkim
>  - draft-chuang-replay-resistant-arc
>  - draft-gondwana-email-mailpath
>  - draft-kucherawy-dkim-anti-replay
> 
> The working group may adopt or ignore these as it sees fit.
> _______________________________________________
> Ietf-dkim mailing list
> Ietf-dkim@ietf.org
> https://www.ietf.org/mailman/listinfo/ietf-dkim

-- 
The Delivery Experts

Laura Atkins
Word to the Wise
laura@wordtothewise.com		

Email Delivery Blog: http://wordtothewise.com/blog