RE: [Asrg] Introduction and another idea
"Bob Wyman" <bob@wyman.us> Tue, 17 June 2003 19:23 UTC
Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id PAA05972 for <asrg-archive@odin.ietf.org>; Tue, 17 Jun 2003 15:23:45 -0400 (EDT)
Received: (from exim@localhost) by www1.ietf.org (8.11.6/8.11.6) id h5HJNGi11024 for asrg-archive@odin.ietf.org; Tue, 17 Jun 2003 15:23:16 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19SL7f-0003wB-1e for asrg-web-archive@optimus.ietf.org; Tue, 17 Jun 2003 14:23:59 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id OAA00770; Tue, 17 Jun 2003 14:23:56 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19SL5P-0002oL-00; Tue, 17 Jun 2003 14:21:39 -0400
Received: from ietf.org ([132.151.1.19] helo=www1.ietf.org) by ietf-mx with esmtp (Exim 4.12) id 19SL5O-0002oI-00; Tue, 17 Jun 2003 14:21:38 -0400
Received: from www1.ietf.org (localhost.localdomain [127.0.0.1]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h5HGT1a11963; Tue, 17 Jun 2003 12:29:01 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h5HGSJm11916 for <asrg@optimus.ietf.org>; Tue, 17 Jun 2003 12:28:19 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id MAA25476 for <asrg@ietf.org>; Tue, 17 Jun 2003 12:28:16 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19SJHV-0001X9-00 for asrg@ietf.org; Tue, 17 Jun 2003 12:26:01 -0400
Received: from vmmrnat.verisignmail.com ([216.168.230.187] helo=vmmr8.verisignmail.com) by ietf-mx with esmtp (Exim 4.12) id 19SJHU-0001Wz-00 for asrg@ietf.org; Tue, 17 Jun 2003 12:26:00 -0400
Received: from ms3.verisignmail.com (ms3.verisignmail.com [216.168.230.176] (may be forged)) by vmmr8.verisignmail.com (Mirapoint Messaging Server MOS 3.2.2-GA) with ESMTP id AMS50591; Tue, 17 Jun 2003 12:28:07 -0400 (EDT)
Received: from BOBDEV (pool-162-83-143-229.ny5030.east.verizon.net [162.83.143.229]) by ms3.verisignmail.com (Mirapoint Messaging Server MOS 3.2.2-GA) with ESMTP id AIT15308; Tue, 17 Jun 2003 12:28:06 -0400 (EDT)
Reply-To: bob@wyman.us
From: Bob Wyman <bob@wyman.us>
To: gep2@terabites.com, asrg@ietf.org
Subject: RE: [Asrg] Introduction and another idea
Message-ID: <001901c334ed$71aa8540$660aa8c0@BOBDEV>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook, Build 10.0.4024
In-Reply-To: <B0000023994@nts1.terabites.com>
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
Importance: Normal
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by www1.ietf.org id h5HGSJm11917
Sender: asrg-admin@ietf.org
Errors-To: asrg-admin@ietf.org
X-BeenThere: asrg@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=unsubscribe>
List-Id: Anti-Spam Research Group - IRTF <asrg.ietf.org>
List-Post: <mailto:asrg@ietf.org>
List-Help: <mailto:asrg-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=subscribe>
List-Archive: <https://www1.ietf.org/pipermail/asrg/>
Date: Tue, 17 Jun 2003 12:28:09 -0400
Content-Transfer-Encoding: 8bit
Content-Transfer-Encoding: 8bit
Gordon Peterson wrote: > A recipient should be able to create a specific-permission > "whitelist" which lists the senders (by E-mail address) to > which they wish to assign "special" privileges. Personally, I believe that this kind of approach will be much more likely to result in useful throttling of spam. It addresses the issue of "consent" that is supposed to be the focus of this research group and has the excellent benefit of being an approach that can be adopted by individuals without requiring changes to the existing infrastructure. I view the problem of "consent" as one similar to that of "licensing" or "authorization." Basically, what you want to do is grant different levels of privilege to people who might attempt to access your inbox. This can be done either be creating an explicit whitelist which is checked when mail arrives, or by providing a "license to send" to a sender which would be a digital certificate detailing their rights and could be attached to mail as it travels through the network. > [SPF, RMX and other DNS based approaches] comes at a high > (perhaps unreasonably high) cost to many types of users who > for legitimate reasons sometimes post from atypical locations The supporters of SPF, RMX, and other similar approaches appear to be well aware of these concerns yet they also appear to be relatively unmoved by them. The response to this concern is to say simply that users at "atypical locations" should be compelled to use SMTP authentication or some other means to access their normal mail servers even when at distant locations. I think that the belief that SMTP authentication is a reasonable alternative is a bit humorous... The assumption is that connectivity exists between the sending client and the users SMTP server. Admittedly, these days, with a much improved network infrastructure, this is often the case -- unlike in the old days when connectivity was *never* assumed. However, even today, connectivity cannot always be guaranteed. For instance, in the last few years, I have often found myself in places like India where from time to time it can be almost impossible to connect to a New York based SMTP server... If we end up adopting approaches that require connectivity to a "home" server, I'm afraid that we're going to have to define some additional protocol that will allow a mail to be submitted at one server, then forwarded to a home server for authentication and processing processing simply so that we can get the headers properly written. This "deferred authentication" process would be cumbersome, error-prone and would probably rely on PKI technologies. Not pleasant... > Gordon Peterson, live in Dallas. I've been active in > computer E-mail and networking longer than most It's good to see an old-timer on the list... I've only been on the net since 1979 and so appreciate the contributions of you old folk... bob wyman _______________________________________________ Asrg mailing list Asrg@ietf.org https://www1.ietf.org/mailman/listinfo/asrg
- [Asrg] Introduction and another idea gep2
- RE: [Asrg] Introduction and another idea Bob Wyman
- Re: [Asrg] Introduction and another idea gep2
- RE: [Asrg] Introduction and another idea gep2
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Yakov Shafranovich
- RE: [Asrg] Introduction and another idea Yakov Shafranovich
- Re: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea Bob Wyman
- RE: [Asrg] Introduction and another idea Bob Wyman
- Re: [Asrg] Introduction and another idea Yakov Shafranovich
- RE: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea Yakov Shafranovich
- Re: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Benjamin Geer
- Re: [Asrg] Introduction and another idea Vernon Schryver
- [Asrg] Introduction and another idea Selby Hatch
- RE: [Asrg] Introduction and another idea gep2
- RE: [Asrg] Introduction and another idea gep2
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Benjamin Geer
- Re: [Asrg] Introduction and another idea Selby Hatch
- Re: [Asrg] Introduction and another idea gep2
- RE: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Benjamin Geer
- Re: [Asrg] Introduction and another idea Kee Hinckley
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Jon Kyme
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Benjamin Geer
- Re: [Asrg] Introduction and another idea Kee Hinckley
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Steven F Siirila
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Yakov Shafranovich
- Re: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea Bob Wyman
- RE: [Asrg] Introduction and another idea Bob Wyman
- RE: [Asrg] Introduction and another idea Bob Wyman
- Re: [Asrg] Introduction and another idea Benjamin Geer
- Re: [Asrg] Introduction and another idea Benjamin Geer
- RE: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Steven F Siirila
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea Bob Wyman
- RE: [Asrg] Introduction and another idea gep2
- Re: [Asrg] Introduction and another idea Kee Hinckley
- RE: [Asrg] Introduction and another idea Bob Wyman
- Re: [Asrg] Introduction and another idea Vernon Schryver
- RE: [Asrg] Introduction and another idea gep2
- Re: [Asrg] Introduction and another idea Tony Hansen
- RE: [Asrg] Introduction and another idea Kee Hinckley
- Re: [Asrg] Introduction and another idea Kee Hinckley
- RE: [Asrg] Introduction and another idea Kee Hinckley
- Re: [Asrg] Introduction and another idea mathew
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea mathew
- Re: [Asrg] Introduction and another idea Bruce Stephens
- Re: [Asrg] Introduction and another idea Vernon Schryver
- Re: [Asrg] Introduction and another idea mathew