https://bz.apache.org/SpamAssassin/show_bug.cgi?id=7596
--- Comment #6 from Kevin A. McGrail <kmcgr...@apache.org> --- Interesting suggestion. The sha-1 issue is going to require a policy exemption from ASF. I think they will grant it since we are ALSO using crypto verification along with the sha1. Otherwise we turn off rule generation for anything pre 3.4.2 and leave them on a static rule set with sha-1 available. -- You are receiving this mail because: You are the assignee for the bug.