Shelf

Archive of Mark Delany's Posts

One small step for email, one giant leap for Internet safety

Posted May 22nd, 2007 at 5:03 pm by Mark Delany, Yahoo! Mail

Number of Comments 28 Comments » / Filed in: Trends & News

We’ve just reached an important milestone in our battle against email scammers. Today, the Internet Engineering Task Force (IETF) has approved DomainKeys Identified Mail (DKIM) as a proposed Internet standard — RFC 4871. That’s bad news for spammers, spoofers, and phishers everywhere.

What is DKIM?

I’m told that not everyone discusses DKIM over their morning brew, so for those few who don’t yet know what DKIM is, here’s the story.

DKIM is an email authentication framework that addresses the widespread issue of email forgery, using cryptography to verify the domain of the sender. It allows email providers to validate an email’s originating domain, making use of blacklists and whitelists more effective. It also makes phishing attacks easier to detect by helping to identify abusive domains.

Critically, DKIM is aimed at domain-level authentication, which makes global adoption feasible.

Since email forgery is an issue touching the whole industry, it’s only natural that earlier attempts and experiments have been made in this area, but it’s now widely acknowledged that the cryptographic approach is the best long-term solution and explains why DKIM is the only one to attain Standards Track status.

For nearly 20 years, the bad guys have had an easy way to hide. But now, with widespread adoption of DKIM, we can correct that imbalance. In other words, the bad guys won’t be able to hide for much longer. About time, I reckon.

Who helped?

While DomainKeys started as a technology at Yahoo!, it will only have value if it’s standardized and ubiquitous. And that’s exactly what we’ve been working on for the last three years.

Three years may seem like a long time to some, but in the standards business that’s an incredibly short period that has only been possible due to strong industry collaboration and a lot of hard work by the DKIM Working Group.

Our co-authors at Cisco, PGP and Sendmail obviously provided superior expertise and support over a great period of time. But to be fair, they are just the tip of a very large iceberg of hardworking individuals who helped bring DKIM to fruition. Organizations as diverse as IBM, Earthlink, Microsoft, Spamhaus, Google, PayPal, and Alt-N all had a hand in getting us to this point.

Frankly, it’s hard to think of anyone in the industry who hasn’t helped at some point in time. Did you know that the FTC and National Institute of Standards and Technology (NIST) also provided a helping hand? Your tax dollars at work — and well-spent, I must say.

What’s next?

Everything hinges on wide-spread adoption. Now that DKIM is on Standards Track, the hurdle to global adoption has been greatly reduced, but not cleared. I joked earlier that someone might not have heard of DKIM, but the email industry is so big and diverse that evangelizing, education and encouragement are needed to ensure the success of DKIM.

As the largest email provider on the planet, we’re committed to doing everything we can. Fortunately, there are many in our industry working hard every day to make DKIM a success. Our thanks go out to all of those helping, from the largest companies to the smallest open source project. DKIM couldn’t have happened without you.

Most importantly, now that you know about DKIM, you can evangelize, too. Maybe it’s the next topic to share over a cup of joe? It worked wonders for me.

Mark Delany
Chief Architect, inventor of DomainKeys

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet, Be First!)
Loading ... Loading ...

Post a commentPost a Comment Bookmark ThisBookmark This Digg ThisDigg This

Close This Box

Enter your email address:

Recent Posts:

Our response to Carl Icahn
May 15, 2008

Live from the Roosevelt Room
May 15, 2008

Business and human rights
May 7, 2008

Do you know where your mouse has been?
May 5, 2008

Ok, so now what?
May 4, 2008

Faceball ShowdownFree is Good FairThis way to free wayCoffee cup artEco-raffles!Gently used sporting gear

View Yahoo! on Flickr

Recent Readers: Provided by MyBlogLog

About Yodel Anecdotal

A look inside the big purple house of Yahoo!, where we'll provide insights into our company, our people, our culture, and the things we think about in the shower. Learn more.

Write to Us

Have a great story to tell about how you've used Yahoo!? Or have a story you'd like us to tell? Drop us a line.

Comment Policy

Give us your $.02. We encourage your comments, quibbles, questions, and suggestions. But please mind your manners. You know the drill... stay on topic, be respectful, and avoid spam, profanity, or anything that violates our Terms of Service.
Learn more about our comment policy.

Shameless Self-Promotion

The Latest News From Yahoo!
Company Info
Become a Yahoo
Yahoo! For Good
All Yahoo! Services