Re: [lamps] smile.p7m as attachments in MUA

Russ Housley <housley@vigilsec.com> Sat, 18 June 2022 15:37 UTC

Return-Path: <housley@vigilsec.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 50DB7C14F749 for <spasm@ietfa.amsl.com>; Sat, 18 Jun 2022 08:37:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.907
X-Spam-Level:
X-Spam-Status: No, score=-1.907 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SMcIbF3PvRNT for <spasm@ietfa.amsl.com>; Sat, 18 Jun 2022 08:37:18 -0700 (PDT)
Received: from mail3.g24.pair.com (mail3.g24.pair.com [66.39.134.11]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id ED179C14F740 for <spasm@ietf.org>; Sat, 18 Jun 2022 08:37:17 -0700 (PDT)
Received: from mail3.g24.pair.com (localhost [127.0.0.1]) by mail3.g24.pair.com (Postfix) with ESMTP id 70258987C0; Sat, 18 Jun 2022 11:37:15 -0400 (EDT)
Received: from [10.0.1.2] (pfs.iad.rg.net [198.180.150.6]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail3.g24.pair.com (Postfix) with ESMTPSA id 5584B987BF; Sat, 18 Jun 2022 11:37:15 -0400 (EDT)
From: Russ Housley <housley@vigilsec.com>
Message-Id: <B6A50E7C-4D0B-47F8-AB41-6B742AC9C755@vigilsec.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_92047659-80C3-447F-AA40-F59D795041D6"
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.21\))
Date: Sat, 18 Jun 2022 11:37:14 -0400
In-Reply-To: <SN6PR05MB524761A318CF3A9D5E2858A1B2AE9@SN6PR05MB5247.namprd05.prod.outlook.com>
Cc: LAMPS <spasm@ietf.org>, Tawhidul Islam <tislam20@gmu.edu>, Eric Osterweil <eoster@gmu.edu>
To: Pavan Kumar Dinesh <pdinesh@gmu.edu>
References: <SN6PR05MB524761A318CF3A9D5E2858A1B2AE9@SN6PR05MB5247.namprd05.prod.outlook.com>
X-Mailer: Apple Mail (2.3445.104.21)
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/Pg9SUEWOJgdDEEuTlXKqYBdpNII>
Subject: Re: [lamps] smile.p7m as attachments in MUA
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 18 Jun 2022 15:37:22 -0000

Please see Section 3.2.1 of RFC 8551.

Russ

> On Jun 18, 2022, at 10:41 AM, Pavan Kumar Dinesh <pdinesh@gmu.edu> wrote:
> 
> TLDR: Is "smime.p7m" a file that is attached to emails, or a reserved name used by recipient MUAs that represents the source MIME of the email? 
> 
> Hello,
> 
> We are students working on an MUA extension that sends SMIME emails as attachments. 
> A file containing the "multipart/signed" or "application/pkcs7-mime" MIME structures is attached to the email being sent. 
> 
> From our understanding, this should be similar to how MUAs sometimes show SMIME messages as an attachment called "smime.p7m". RFC 8551 describes .p7m as the extension for "application/pkcs7-mime", and examples include Content-Disposition: attachment (Section 3.3).
> 
> However, when calling the attachment "smime.p7m" (Or really anything with the ".p7m" extension) , certain MUA (Apple Mail) has odd behavior on the recipient side, renaming the attachment to "Mail Attachment.eml" and showing security warnings for user before message displayed. This occurs no matter the content of the attached file. This makes us suspect sending emails with *.p7m named attachments is not widely compatible (perhaps a conflict with reserved file names for the MUA). 
> 
> Any words of wisdom on what "smime.p7m" actually is when mail clients show it as an attachment? Is that something we can send as an attachment at all?
> 
> Thank you!
> _______________________________________________
> Spasm mailing list
> Spasm@ietf.org
> https://www.ietf.org/mailman/listinfo/spasm