Re: about Internet Draft for "Domain Keys" (spam-control)

From: Jean-Luc Cooke (jlcooke_at_engsoc.org)
Date: 05/12/05


Date: 12 May 2005 12:57:32 GMT

All these issues are discussed at length in various places.

In short:
 - look up "certificate revocation lists" and "CRL distribution points"

JLC

David Bernier <david250@videotron.ca> wrote:
> Maybe to minimize the effects of private key compromise:

> (a) protect to one's best the private key of a server running Sendmail
> (b) change keys ( key pairs: private/public) "frequently"

> as by the usual security recommendations for login passwords?

> Also, Key revocation is discussed in the draft.

> Another question: is there a way to detect key compromise that is fast
> with few false positives ?

> David Bernier

--