This document provides an overview of the DomainKeys Identified Mail (DKIM) service and describes how it can fit into a messaging service. It also describes how DKIM relates to other IETF message signature technologies. It is intended for those who are adopting, developing, or deploying DKIM. DKIM allows an organization to take responsibility for transmitting a message, in a way that can be verified by a recipient. The organization can be the author's, the originating sending site, an intermediary, or one of their agents. A message can contain multiple signatures from the same or different organizations involved with the message. DKIM defines a domain-level digital signature authentication framework for email, using public-key cryptography, with the domain name service as its key server technology (RFC 4871). This permits verification of a responsible organization, as well as the integrity of the message contents. DKIM also enables a mechanism that permits potential email signers to publish information about their email signing practices; this will permit email receivers to make additional assessments about messages. DKIM's authentication of email identity can assist in the global control of "spam" and "phishing". Status of This Memo This memo provides information for the Internet community. It does not specify an Internet standard of any kind. Distribution of this memo is unlimited.
[1]
Loren M. Kohnfelder,et al.
Towards a practical public-key cryptosystem.
,
1978
.
[2]
Paul V. Mockapetris,et al.
Domain names: Concepts and facilities
,
1983,
RFC.
[3]
John Linn,et al.
Privacy enhancement for Internet electronic mail: Part I: Message encipherment and authentication procedures
,
1989,
RFC.
[4]
William Stallings,et al.
PGP Message Exchange Formats
,
1996,
RFC.
[5]
Raph Levien,et al.
MIME Security with OpenPGP
,
2001,
RFC.
[6]
Peter W. Resnick,et al.
Internet Message Format
,
2001,
RFC.
[7]
Blake Ramsdell,et al.
Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.1 Message Specification
,
2004,
RFC.
[8]
Jim Lyon,et al.
Purported Responsible Address in E-Mail Messages
,
2006,
RFC.
[9]
Meng Weng Wong,et al.
Sender ID: Authenticating E-Mail
,
2006,
RFC.
[10]
Jim Fenton,et al.
Analysis of Threats Motivating DomainKeys Identified Mail (DKIM)
,
2006,
RFC.
[11]
Meng Weng Wong,et al.
Sender Policy Framework (SPF) for Authorizing Use of Domains in E-Mail, Version 1
,
2006,
RFC.
[12]
Eric Allman,et al.
DomainKeys Identified Mail (DKIM) Signatures
,
2007,
RFC.
[13]
David Shaw,et al.
OpenPGP Message Format
,
1998,
RFC.