Earl Hood wrote:
An attacker can easily add headers to assert that they're a mailing list (albeit one you haven't heard of), resender, etc. and sign them. I don't think there is any way to prove what the signer role is.I've brought up the issue of signer roles, but it appears to have been rejected or gained no traction.
-Jim _______________________________________________ ietf-dkim mailing list http://dkim.org
