Cryptography (was: Re: draft-klensin-emailaddr-i18n-00)
Paul Hoffman / IMC <[email protected]>
| Newsgroups | gmane.ietf.imaa |
|---|---|
| Message-ID | <p06002031bbc35f4fc060@[63.202.92.152]> |
At 11:24 PM +0000 10/27/03, Roy Badami wrote: >I know this is going off-topic, but FWIW I think both Adam Costello >and John Cowan have valid points here. (Disclaimer: IANAC) You do not need to be a cryptographer here. As I have said in multiple posts: the headers are not signed. We can talk about this until we are blue in our collective faces, but it is irrelevant. For those folks who don't understand this, please read RFC 1847. You will see that the part of the message that is signed is just the body, not the header. This is good, because RFC 2821 *requires* the header to be changed at every MTA. Arguing "nothing should change the header because it is signed" is clearly just silly. --Paul Hoffman, Director --Internet Mail Consortium