On 11/17/2024 2:19 PM, Bron Gondwana wrote:
Regarding the question of "is this DKIMbis or something bigger"?  It's something bigger than just tweaks to DKIM.

The choice of the name "DKIM2" is partially branding, and partially because it re-uses the existing DNS entries for DKIM keys and large parts of the signing infrastructure.


DKIM is not called DomainKeys2.

"Using bits of" is not the same as "adding bits to".  The new protocol is not compatible with the old protocol, in spite of reusing some bits.

So, this needs its own name, to avoid confusion about the nature of the effort.  This is competitive replacement, not compatible upgrade.  The development and operations costs are fundamentally different.

From an operational and 'transition' standpoint, consider the history of IPv4 vs. IPv6, which also chose replacement rather than upgrade. Plans for global 'migration' of an Internet service tend to be overly optimistic about the nature and timing of adoption of the new and deprecation of the old.  By decades.

d/

--
Dave Crocker
Brandenburg InternetWorking
bbiw.net
***  bluesky: @dcrocker.bsky.social  ***
mast: @dcrocker@mastodon.social
_______________________________________________
Ietf-dkim mailing list -- ietf-dkim@ietf.org
To unsubscribe send an email to ietf-dkim-le...@ietf.org

Reply via email to