On 5/11/2020 11:23 AM, Murray S. Kucherawy wrote:
Indeed; why would I believe what any given domain claims in this
tag?

If the response to that is that you will trust only what certain
domains say here, then you probably already know the equivalent of
what's in the tag anyway.

Establishing a clear community desire for this and for how it is expected to be used seems an important hurdle to get over, with the question you raise nicely establishing the need (for the need...)



On 5/11/2020 1:33 PM, Jim Fenton wrote:
On 5/11/20 10:30 AM, Dave Crocker wrote:
On 5/11/2020 10:21 AM, Alessandro Vesely wrote:
The question is, what responsibility is being claimed?
....
Tagging keys with aim= would allow senders to choose an appropriate
selector
under different circumstances.

If signers want to have a standardized means of indicating the
fine-grained semantics behind their signature, they can do that
without modifying DKIM.

Rather, define and use a header field that specifies DKIM signing
policy.  Cover it with the DKIM signature, of course.

If this is expressing semantics for the DKIM signature, it's also likely
that there are going to be multiple DKIM signatures on the message with
different semantics. There might then be multiple instances of the
header field, and it would be difficult to associate each signature with
the appropriate semantics header field, except in the specific case
where there is only one specific semantics header field and all
signatures use either that or the default.

Tie it do the DKIM d= or d= + selector.


There might also be the situation where a domain wants to delegate a key

Hence my suggestion that figuring out such details is where discussion could get interesting, if only because people will raise all sorts of combinatorial theories, independent of demonstrated need, and this is a space with lots of combinatorials...


--
Dave Crocker
Brandenburg InternetWorking
bbiw.net

_______________________________________________
Ietf-dkim mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ietf-dkim

Reply via email to