[Emailcore] Re: [Last-Call] Re: [secdir] draft-ietf-emailcore-as-28 ietf last call Secdir review

Rob Sayre <sayrer@gmail.com> Sat, 02 May 2026 16:02 UTC

Return-Path: <sayrer@gmail.com>
X-Original-To: emailcore@mail2.ietf.org
Delivered-To: emailcore@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id B7CE4E7E6CBE for <emailcore@mail2.ietf.org>; Sat, 2 May 2026 09:02:56 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1777737776; bh=kgq09065kYy3kzd90iyMbDzZKNauxWAqVc7967KLI5s=; h=References:In-Reply-To:From:Date:Subject:To:Cc; b=d+BCCmMtPRRNxr9OdlMB3ZoNRmSJK1Vvc+eHKxx66UoRs/rDNA+gvpHlJJyslGXIf /33muaK6bBpKd5SPXW2AxE7nd43g+SDwLOr73GPRePIYhb9kq8x91A+NI06r0IIwcZ PYZgNh2qri0sZDV5bDxFWalFZxGDDyDLmYPIm9YQ=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id REFmXjL5g6fd for <emailcore@mail2.ietf.org>; Sat, 2 May 2026 09:02:56 -0700 (PDT)
Received: from mail-pl1-x634.google.com (mail-pl1-x634.google.com [IPv6:2607:f8b0:4864:20::634]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 66547E7E6B80 for <emailcore@ietf.org>; Sat, 2 May 2026 09:01:25 -0700 (PDT)
Received: by mail-pl1-x634.google.com with SMTP id d9443c01a7336-2b9705613ddso16515485ad.1 for <emailcore@ietf.org>; Sat, 02 May 2026 09:01:25 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1777737679; cv=none; d=google.com; s=arc-20240605; b=AaWaYbH//tjwygnOIOgZA+EdHt0iJG1R5j1vMmDegtGkyfL4mB9zvdBheY6b57LTM4 rfnvje3WdZCY+cltcI381Yac6UQqX2yGTS8zELwHExs9TfA+ZNORXlMnlOWMr8bQBUfJ aJ/8Qm5v64tgbjlXqEM54ATsXICdmz5QiVMFZCCU5brbpdzE+UNJNvyap6C2Ayp8kOs+ hxuox4AQy2s0Y0Q42DGr/v3nql9RnSkhtIEcofMmw8/Dicve/9Z2Dx1hmdCmW2kFjaCE pku1OHQjvcKVgaN1QSeTnUbJ3/WeJM6FayPjp0keBkUwEO1sLHjppNLhuO1btXjlDzOO PtVQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=zA2LpN+pBJRknQjDztgVhhNiPCEnAfYvsXy195Q7SC4=; fh=EQKoM0mZU8mzOCRGoWxGsESTSB8HrdaoRvY0FNNDPOM=; b=hH7fH6IXhIhXs7sXvLGAlzE/j6D4Q3mzouFGioMwtByxKMrjixe6Zio7yTJya6Y/wR c+rjcYv4Wzn2154yzn7ryXwVXVNDvcgdVMD9s6GFxfsgEeSaQHAsocEWQQfWWjydJCzR Au87hj0x3BDL9pPF3+I96EPPB7SyCkrCLTI1AOuUKQJRSELBWE+wZjV/W8sNEBSYcPrL SwAuT7G4wesJ86YbdJ7MuJ06oQ5gcTzN1M6sBDNgEZrPKQpcJm4V+MwghxEC0m0Z0fMU CiAu7FCD3lxChaJ/RsbJ4RyA/JU7Pf3+HsCCfCxqVTCp2RofamcFMbdKXaB9n7j+LlOL /P9w==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1777737679; x=1778342479; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=zA2LpN+pBJRknQjDztgVhhNiPCEnAfYvsXy195Q7SC4=; b=i52W5z+/Wpigu9kw2ZI6x414fceS+yWL5fmSOw14/aRSACWetRaDfDWpKzU5knpxXI ZfaxUiHo9P4W4E0mknBjk50HT4wBPffh7ExT75H6gnQRUC/cOxtde5OXTkwPRA5opoHT O3dKYzRaE2cDMdc4h7KtNpzG3hy2PzFa+0SkytaLPtAhJK+b+kc/URxtR/p4aeRhxRKU sOIrgEjY5UP/rPuu/nVTtGGryQ3LVfbr/MpLfM0HQHrBYavaLICBvfAgV0ujM+uWZgQ0 WsAsumaY5XOmid/Zntu/2Mt37bNy3Nh+zD4bOV/7L/JzWyBxbe7bq51ReeyhjI569zQZ 4Cdg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1777737679; x=1778342479; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=zA2LpN+pBJRknQjDztgVhhNiPCEnAfYvsXy195Q7SC4=; b=HjHMfhub/P5LEJHHUncqq1Adk8g1iNld8J7nJFx4aL0hRIAsKK27EAV0UwVFpbw/9q 43sQIWk5JCe7/Kjo9i0cVc2XZkq6NNU9ADiHHEtz3rfoxsfFvOKjqiMNNTroHf2foMxu LAWskf7VUr4Qg8Ww4U/SCPgb798LPR4BZZDwnMFRvh2vOaaM5i9+fJrgCSMm5pukUNA9 s0BoSkrO+j6Me9JKQcyvcXGrnRCgsmdaVDnjI849IIjwjVB2UyYS5XkkHqBS24kfMaCa ra4ynTe6glidBCYk+5tZYy6Wyexh0MewQVpVy63CnN3xbbOJTRtSLUef95rS8xUVZ+zi i+GQ==
X-Forwarded-Encrypted: i=1; AFNElJ8eZnBgM9pPhOQpkDWKAJ7lwfBWRnKUHbHStJHHOkULGK1E3dbOtGo0OonF3NKg36ERJ/VZEDLrlCk=@ietf.org
X-Gm-Message-State: AOJu0YyIQKvlJGcIeAcnagnpJv+TeMl12ebF6Uf51Pf6r+jpnHAYr72l 8+eX6Lysp+HXA9TarsmlYSM0ABDSw8JdNS0l3YY+ux+EVHG4z/qzqY3DXSITXgI0mFv154E+2u4 b9fOWHIMctdcv3Zhbn/obsBLUt+DsDSw9CA==
X-Gm-Gg: AeBDieuYfHcr9oQD7u7UfPyWcM5ar2KCOegtHMPSGWCfBd7LHBAB4KrE/2vQ/BiF9Pm zwtCjKAkpoAmie8KEGQEV7z3h+AaufzuUfkDcm9Rev/+vX1lDKUKVoakDY/SySSVyp84aol584l dWKEDW3CAmQRZwrzKTeLNgGtWHhR/eMUipLKI1cFFBMu6De4Q+tpC6XjddGOfaoqB64ZKJL8RsZ vaNrAOLg34LUF62IBZ1ZPk6XBBgfgd1gDSgW+rkb9AzH649ooNrNoBvcsDZd/xLk0wRVYTMi9Er pvZbZEo7Oy0FKzc/k0o+/gRW3ZD8ls/oJoiyr2G+uyYI2nSKU4k=
X-Received: by 2002:a17:903:286:b0:2b4:5f67:5914 with SMTP id d9443c01a7336-2b9f283212cmr33561815ad.33.1777737678518; Sat, 02 May 2026 09:01:18 -0700 (PDT)
MIME-Version: 1.0
References: <177735548849.818.15891659530280505461@dt-datatracker-b45949c58-t72jx> <CAL02cgTFzt9JWqjCaeJvjprw7A-CVxSsuACcGeq+5v2HswLisg@mail.gmail.com> <afLDxbSmB-EhfvfZ@chardros.imrryr.org> <593710E3-F462-49DF-AE9A-0EAB8F984851@episteme.net> <CABcZeBOCZ0COccyTHWRgJ3JGGtwC+N63742J1ak2=wOfzqeCZA@mail.gmail.com> <D6470493-E87E-409B-8F2B-C7635E3B7AEF@episteme.net> <CAChr6SxyqaSE5NBUPN1dOwCfm1O_W7A0tEfmwxCpoYsaOLmbfQ@mail.gmail.com> <34E46EE2-88E4-4993-8B15-8269A68104C2@episteme.net> <CAChr6Swnr-ySv5Pp0Byb0W3RU4++_bFpBFOwkv2Q5r3wLTe+sw@mail.gmail.com> <16319092-5fef-4844-bc36-b9d67543c00f@lear.ch> <9609A232-39FC-4D36-9986-1D9D6A4209B5@fugue.com> <012b743c-5527-41a6-a726-76e0b74f4637@lear.ch> <CAChr6Syhj4omu6vXNaLpe+XaSRWnC=xBwB3Nwu+Gw8WgsgiSjQ@mail.gmail.com> <e85f5d86-7bba-4549-97df-eabd969a8077@lear.ch>
In-Reply-To: <e85f5d86-7bba-4549-97df-eabd969a8077@lear.ch>
From: Rob Sayre <sayrer@gmail.com>
Date: Sat, 02 May 2026 09:01:06 -0700
X-Gm-Features: AVHnY4J_7la7xL8Abc3KBL0CT2331SN3rdVLEzPJ0BgWDaOyeQJQdonYqsj627U
Message-ID: <CAChr6SwG_YE787XOv=UenpDdsZOFWrRSOJ-qcQPj0KBfGy=+JA@mail.gmail.com>
To: Eliot Lear <lear@lear.ch>
Content-Type: multipart/alternative; boundary="000000000000d4fced0650d7ce18"
Message-ID-Hash: UH2C6MBEEKN7ZPAPM7PQCEIRPOEWB5ME
X-Message-ID-Hash: UH2C6MBEEKN7ZPAPM7PQCEIRPOEWB5ME
X-MailFrom: sayrer@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Ted Lemon <mellon@fugue.com>, emailcore@ietf.org, last-call@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Emailcore] Re: [Last-Call] Re: [secdir] draft-ietf-emailcore-as-28 ietf last call Secdir review
List-Id: EMAILCORE proposed working group list <emailcore.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/emailcore/DTJS79DLbpMoP__x2SoUS0NSBZw>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emailcore>
List-Help: <mailto:emailcore-request@ietf.org?subject=help>
List-Owner: <mailto:emailcore-owner@ietf.org>
List-Post: <mailto:emailcore@ietf.org>
List-Subscribe: <mailto:emailcore-join@ietf.org>
List-Unsubscribe: <mailto:emailcore-leave@ietf.org>

On Sat, May 2, 2026 at 8:04 AM Eliot Lear <lear@lear.ch> wrote:

> Hi Rob
> On 02.05.2026 17:01, Rob Sayre wrote:
>
>
> It *is* true that you need to keep cleartext if you want maximum
> deliverability, but sometimes that is not a priority. It comes at the cost
> of numerous third parties observing email traffic, even if they are not
> acting as an MTA.
>
> I agree.  The only thing we're debating is who gets to make the tradeoff.
>

I see. My opinion (and it seems like many others, but not the whole list)
is: everyone.

Implementers can choose not to support cleartext, and operators can choose
an implementation that supports cleartext (there are plenty of those).

thanks,
Rob