Re: Public Key Look Up
John C Klensin <[email protected]>
| Newsgroups | gmane.ietf.smtp |
|---|---|
| Message-ID | <5732988BD0B02F7E0FBC7CC6@PSB> |
--On Wednesday, May 12, 2021 18:57 +0200 Alessandro Vesely <[email protected]> wrote: >... >>> This is well understood technology - see any company that >>> intercepts https:// and re-encrypts the user-side traffic >>> using their own keys.> >> or DKIM. > Neither case provides for end-to-end crypto. (Hm... possibly > except DKIM for postmaster to postmaster communication, > deploying the binary key as OpenGPG. Not an alluring > technique.) And, getting back to the point that John Levine, myself, and others have been trying to make, there is a world (or at least several orders of magnitude) of difference between keys associated with hosts (mail servers, firewall gateways, web sites, etc.) and those associated with individual users or mailbox names. best, john