Candidate address format unsigned: fanf2@hermes.cam.ac.uk nonce: Exim message ID key ID: middle bits of time signature: HMAC(key, id.nonce.addr) How many bits to use from HMAC? How many bits in the key? Is the nonce secure enough?