Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 27 Nov 2018 09:06:55 +0700
From:      Victor Sudakov <vas@mpeks.tomsk.su>
To:        Trond =?iso-8859-1?Q?Endrest=F8l?= <Trond.Endrestol@fagskolen.gjovik.no>
Cc:        FreeBSD questions <freebsd-questions@freebsd.org>
Subject:   Re: Invalid DKIM signatures in this list
Message-ID:  <20181127020655.GB79319@admin.sibptus.ru>
In-Reply-To: <alpine.BSF.2.21.9999.1811261704230.90197@mail.fig.ol.no>
References:  <20181126125259.GB86999@admin.sibptus.ru> <alpine.BSF.2.21.9999.1811261704230.90197@mail.fig.ol.no>

next in thread | previous in thread | raw e-mail | index | archive | help
Trond Endrest=F8l wrote:
>
>> Dear Colleagues,
>>
>> I have noticed that the Mailman which manages this list keeps the sender=
's
>> "DKIM-Signature:" header intact but modifies the body of the message by =
adding
>> a footer.
>
>Are you sure?

Absolutely. You can review this message to the list as a recent example:=20
http://termbin.com/rdsk

>
>When I received your message, the hash was made up using Message-ID,
>Subject, To, From, Date, and In-Reply-To. I failed to find the latter
>field.

What "latter field" are you talking about? I'm talking about the *body*
of the message being tampered with. The hash of the *body* is also=20
signed and present in the DKIM-Signature.


--=20
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
2:5005/49@fidonet http://vas.tomsk.ru/



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20181127020655.GB79319>