Debian: Paul Wise, Junichi Uekawa, and Ian Jackson
-
Paul Wise: FLOSS Activities September 2023
-
Junichi Uekawa: Family member getting sick, and I'm starting to feel bad.
Family member getting sick, and I'm starting to feel bad. This is bad.
-
[Repeat] Ian Jackson: DKIM: rotate and publish your keys
If you are an email system administrator, you are probably using DKIM to sign your outgoing emails. You should be rotating the key regularly and automatically, and publishing old private keys. I have just released dkim-rotate 1.0; dkim-rotate is a tool to do this key rotation and publication.
If you are an email user, your email provider ought to be doing this. If this is not done, your emails are “non-repudiable”, meaning that if they are leaked, anyone (eg, journalists, haters) can verify that they are authentic, and prove that to others. This is not desirable (for you).
There are possible email protocol improvements which might help, but they’re quite out of scope for this article.