Accredited DomainKeys: A Service Architecture for Improved Email Validation
نویسندگان
چکیده
We present an architecture called Accredited DomainKeys, which builds on the DomainKeys email authentication infrastructure to address the following questions: • “Did the sender actually send this email?” • “Is the sender of this email trustworthy?” The proposed DomainKeys architecture already addresses the first question but not the second. Accredited DomainKeys strengthens the reliability of a positive answer to the first question and provides a mechanism to answer the second. In terms of infrastructure requirements, Accredited DomainKeys involves a modest additional use of DNS over the existing DomainKeys proposal. In addition, the specification of Accredited DomainKeys provides a mechanism for historical non-repudiation of email messages sent from a given domain, which is useful for the enforcement of acceptable usage policies. Several compliant implementations of Accredited DomainKeys are possible. This paper describes two implementations, one based on time-stamped signatures, and the other based on authenticated dictionaries and the secure transaction management system (STMS) architecture.
منابع مشابه
DomainKeys Identified Mail Demonstrates Good Reasons to Re-invent the Wheel
DomainKeys Identified Mail is an anti-spam proposal that involves mail servers digitally signing outbound email and verifying signatures on inbound email. The scheme makes no use of existing public key infrastructure or email security standards. This paper provides an outline of the scheme and discusses some reasons why re-use of existing standards is inappropriate in this context.
متن کاملNetwork Working Group Domainkeys Identified Mail (dkim) Service Overview
This document provides an overview of the DomainKeys Identified Mail (DKIM) service and describes how it can fit into a messaging service. It also describes how DKIM relates to other IETF message signature technologies. It is intended for those who are adopting, developing, or deploying DKIM. DKIM allows an organization to take responsibility for transmitting a message, in a way that can be ver...
متن کاملDomainKeys Identified Mail
DomainKeys Identified Mail (DKIM) Service Overview draft-ietf-dkim-overview-02 Status of this Memo By submitting this Internet-Draft, each author represents that any applicable patent or other IPR claims of which he or she is aware have been or will be disclosed, and any of which he or she becomes aware will be disclosed, in accordance with Section 6 of BCP 79. Internet-Drafts are working docum...
متن کاملInternet - Draft DomainKeys June 2006
DomainKeys" creates a domain-level authentication framework for email by using public key technology and the DNS to prove the provenance and contents of an email. This document defines a framework for digitally signing email on a per-domain basis. The ultimate goal of this framework is to unequivocally prove and protect identity while retaining the semantics of Internet email as it is known tod...
متن کاملInternet - Draft DomainKeys
DomainKeys" creates a domain-level authentication framework for email by using public-key technology and the DNS to prove the provenance and contents of an email. This document defines a framework for digitally signing email on a per-domain basis. The ultimate goal of this framework is to unequivocally prove and protect identity while retaining the semantics of Internet email as it is known tod...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2005