Hi!

On 5/26/26 22:30, Vittorio wrote:
the O(1) I referenced is per hop relative to chain length, verification cost at each hop does not depend on the number of previous hops. Your rollback to i=1 via merged rulesets is efficient for reaching the original, but when verification fails it does not localise which hop introduced the problem. Hop-by-hop verification does: each hop verifies its predecessor before signing, so a dishonest node is identified at the point of failure.

That's right and a trade-off for verifiers to make. If after a while we see that end-to-end failures are rare, but in those cases we want to have precise attribution, of course a verifier could be implemented two-step: First the optimized end-to-end verification. If that succeeds, well, if not, re-verify hop-by-hop (a little slower).

But then, I'd believe that in most settings, verifying hop-by-hop to begin with will be fast enough despite the O(n*m) worst case complexity (time).

On null recipes and attachment removal, Allen Robinson stated in this list that null recipes reintroduce trust and are a strong reason not to support them. If null recipe is now the recommended approach for antivirus attachment removal, that should be made explicit, accepting that DKIM2-extended provides no reconstruction of the removed content for that class of modification.
I think null recipes have not been removed from the draft, so they're still in the game even if there's an opinion to not support them at all.
On non-monotone recipes your April 16 review stated that non-monotone recipes make streaming with bounded memory impossible. I cited that observation in my draft. I note you have not addressed it in your reply.

My basis is the current "official" WG draft. The requirement for copy instructions to be strictly monotone is still in there.

Hence I don't see a need to address an issue with a hypothetical change in the draft.

Hannah.

--
Hannah Stern

Software Developer
Mail Transfer Development

1&1 Mail & Media Development & Technology GmbH |  |   |
Phone: +49 721 91374-4519
E-Mail: [email protected] | Web: www.mail-and-media.com www.gmx.net 
www.web.de www.mail.com www.united-internet-media.de

Hauptsitz Montabaur, Amtsgericht Montabaur, HRB 5452

Geschäftsführer: Alexander Charles, Dr. Michael Hagenau, Thomas Ludwig, Dr. 
Verena Patzelt


Member of United Internet

Diese E-Mail kann vertrauliche und/oder gesetzlich geschützte Informationen 
enthalten. Wenn Sie nicht der bestimmungsgemäße Adressat sind oder diese E-Mail 
irrtümlich erhalten haben, unterrichten Sie bitte den Absender und vernichten 
Sie diese E-Mail. Anderen als dem bestimmungsgemäßen Adressaten ist untersagt, 
diese E-Mail zu speichern, weiterzuleiten oder ihren Inhalt auf welche Weise 
auch immer zu verwenden.

This e-mail may contain confidential and/or privileged information. If you are 
not the intended recipient of this e-mail, you are hereby notified that saving, 
distribution or use of the content of this e-mail in any way is prohibited. If 
you have received this e-mail in error, please notify the sender and delete the 
e-mail.

_______________________________________________
Ietf-dkim mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to