
|
What’s DKIM’s goal? Overall: create a standard for MTA-MTA/domain “validation” or “accountability” that will help in the battle against spam and will not harm non-participants Next level down: Allow sending domains to accept responsibility for mail sent from that domain (enables e.g. whitelisting) Allow receiving domains to suspect “From” spoofing for originating domains (e.g. those that publish signing policies) Make DKIM resist simple attacks/work-arounds by spammers Don’t make non-DKIM folks’ life worse (no harm) Enable other anti-spam services by increasing the confidence mail handling tools can have in their inputs Care is needed: XX% of current spam involves spoofing abuse But so does YY% of genuine email, so care is needed Spammers are not dumb, we must consider their reactions |