Fwd: Removing Outer SCMP Headers

Tom Arnold <[email protected]> Thu, 17 Jun 1999 21:23:24 -0700
Newsgroups gmane.ietf.scmp
Message-ID <[email protected]>
This is an interesting request.  


The concept behind the outer SCMP headers was an early requirement to allow an receiving agent's server the opprotunity to "pre-qualify" the message before decrypting. In such a manner, a server could receive a message and possibly determine that another site should process the message. Then without ever decrypting the message (even if this first server was able to decrypt the message), it could respond with a redirect and, in essence, forward the message. 


We had also considered the tripple wrapping described in the S/MIME-ESS document from Hoffman as a way to protect the integrity of the inner-message. 


Any thoughts or observations on this would be greatly appreciated...


>[snip]

>>

>>O'Bartley from the SCMP list has requested that we remove the outer headers 

>>on the SCMP message.

>>We could certianly do this. I just means that we cannot reject the message 

>>before attempting to decrypt

>>it.

>>

>>What do you think about removing these headers?

>>






Thomas A. Arnold

Vice President

Chief Technical Officer

CyberSource Corporation

[email protected]

http://www.cybersource.com/

----------------------------------------------------

This Email and any attached files are confidential and may also be
privileged. <bold><italic> </italic></bold>It is intended only for the
individual or entity to whom it is addressed.  If you are not the
recipient or an authorized agent of the recipient, y ou are hereby
notified that any use, dissemination, distribution or copying of this
communication is strictly prohibited.  If you have received this message
in error, please contact CyberSource Corporation immediately at (408)
556-9100.  

Thank you.