Accredited DomainKeys: A Service Architecture for Improved Email Validation

نویسندگان

  • Michael T. Goodrich
  • Roberto Tamassia
  • Danfeng Yao
چکیده

We present an architecture called Accredited DomainKeys, which builds on the DomainKeys email authentication infrastructure to address the following questions: • “Did the sender actually send this email?” • “Is the sender of this email trustworthy?” The proposed DomainKeys architecture already addresses the first question but not the second. Accredited DomainKeys strengthens the reliability of a positive answer to the first question and provides a mechanism to answer the second. In terms of infrastructure requirements, Accredited DomainKeys involves a modest additional use of DNS over the existing DomainKeys proposal. In addition, the specification of Accredited DomainKeys provides a mechanism for historical non-repudiation of email messages sent from a given domain, which is useful for the enforcement of acceptable usage policies. Several compliant implementations of Accredited DomainKeys are possible. This paper describes two implementations, one based on time-stamped signatures, and the other based on authenticated dictionaries and the secure transaction management system (STMS) architecture.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

DomainKeys Identified Mail Demonstrates Good Reasons to Re-invent the Wheel

DomainKeys Identified Mail is an anti-spam proposal that involves mail servers digitally signing outbound email and verifying signatures on inbound email. The scheme makes no use of existing public key infrastructure or email security standards. This paper provides an outline of the scheme and discusses some reasons why re-use of existing standards is inappropriate in this context.

متن کامل

Network Working Group Domainkeys Identified Mail (dkim) Service Overview

This document provides an overview of the DomainKeys Identified Mail (DKIM) service and describes how it can fit into a messaging service. It also describes how DKIM relates to other IETF message signature technologies. It is intended for those who are adopting, developing, or deploying DKIM. DKIM allows an organization to take responsibility for transmitting a message, in a way that can be ver...

متن کامل

DomainKeys Identified Mail

DomainKeys Identified Mail (DKIM) Service Overview draft-ietf-dkim-overview-02 Status of this Memo By submitting this Internet-Draft, each author represents that any applicable patent or other IPR claims of which he or she is aware have been or will be disclosed, and any of which he or she becomes aware will be disclosed, in accordance with Section 6 of BCP 79. Internet-Drafts are working docum...

متن کامل

Internet - Draft DomainKeys June 2006

DomainKeys" creates a domain-level authentication framework for email by using public key technology and the DNS to prove the provenance and contents of an email. This document defines a framework for digitally signing email on a per-domain basis. The ultimate goal of this framework is to unequivocally prove and protect identity while retaining the semantics of Internet email as it is known tod...

متن کامل

Internet - Draft DomainKeys

DomainKeys" creates a domain-level authentication framework for email by using public-key technology and the DNS to prove the provenance and contents of an email. This document defines a framework for digitally signing email on a per-domain basis. The ultimate goal of this framework is to unequivocally prove and protect identity while retaining the semantics of Internet email as it is known tod...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2005