I know that TLS is only hop-to-hop, not end-to-end
and that MTA-MTA only has STARTTLS, not fully encrypted connections,
but it does allow client certificates as well as server certificates.

What would we need in order for SMTP TLS client certificates
to have a useful place in authenticating the sender ?

DNSSEC would probably help; are there other useful missing pieces ?

--
Andrew C. Aitchison                      Kendal, UK
                   [email protected]
_______________________________________________
mailop mailing list
[email protected]
https://list.mailop.org/listinfo/mailop

Reply via email to