Educause Security Discussion mailing list archives

Re: [EXTERNAL] Re: [SECURITY] Notifications of external emails


From: Alan Amesbury <amesbury () OITSEC UMN EDU>
Date: Wed, 8 Feb 2017 12:55:09 -0600

On Feb 8, 2017, at 10:37 , Cecka, Benjamin <BCecka () CLARK EDU> wrote:

Since August we’ve been phished persistently and we also implemented the “[EXTERNAL]” subject prefix on all of our 
inbound email. We also had some resistance but it hasn’t gotten to the point where we felt the need to reconsider. It 
took a few days of adjusting as some internal email was being flagged incorrectly and there was objection to flagging 
student messages and some hosted web applications. All in all there was also positive feedback and the campus seems 
to have adjusted well to it.

Interesting approach, but doesn't this break DKIM signatures?


-- 
Alan Amesbury
University Information Security
http://umn.edu/lookup/amesbury


Current thread: