[Emailcore] Re: [Last-Call] Re: Re: draft-ietf-emailcore-as-28 ietf last call Secdir review

Eliot Lear <lear@lear.ch> Thu, 30 April 2026 03:53 UTC

Return-Path: <lear@lear.ch>
X-Original-To: emailcore@mail2.ietf.org
Delivered-To: emailcore@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id BC15CE634DC3; Wed, 29 Apr 2026 20:53:42 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1777521222; bh=rpt5wv0fD10kwOZdYGoK5+8Yl/yZgfwYFvTKAKqLZ3A=; h=Date:Subject:To:Cc:References:From:In-Reply-To; b=sbAH0kBNbdE2d1A5NnWPM36WjkhHYQSi47uIh1lcstT4Mbyaj9nCGD5LL84d9W+Rz GyaaBHUxMITJmqzUT2K5eSW/1PPcGSUl0aW2XvJayMA/MS2vLU+OPjhwrLJiCp0QNj 7wkI8ZBo43LxZgQ5QwTkUzBGU9413rVrFJMOtGV4=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -0.89
X-Spam-Level:
X-Spam-Status: No, score=-0.89 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_ADSP_ALL=0.8, DKIM_INVALID=0.1, DKIM_SIGNED=0.1, HTML_MESSAGE=0.001, SPF_PASS=-0.001, T_SPF_HELO_PERMERROR=0.01] autolearn=no autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=fail (1024-bit key) reason="fail (message has been altered)" header.d=lear.ch
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hqVep5jtzGhR; Wed, 29 Apr 2026 20:53:42 -0700 (PDT)
Received: from upstairs.ofcourseimright.com (upstairs.ofcourseimright.com [IPv6:2a00:bd80:aa::2]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id F2C70E634DB4; Wed, 29 Apr 2026 20:53:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=lear.ch; s=upstairs; t=1777521214; bh=rpt5wv0fD10kwOZdYGoK5+8Yl/yZgfwYFvTKAKqLZ3A=; h=Date:Subject:To:Cc:References:From:In-Reply-To:From; b=X6twq3uMytadfOxL/3pJuIR1GT3FuI5r72kiGRguWgw2FvIuO9hFX0O9RXKA/d/J/ 5nAsLVEw5l1jg7xpMA26dXHKTa+c/uE/6XFaXeaYw1ErHutmG30W7C+tWdAhkP4tJg kWOayPIQfyaupgr938FSxd4jRLXNQ4HoP0cz0pTY=
Received: from [IPV6:2a02:1210:2c9b:e200:e53f:2b23:e03c:72d8] (0.1.2.1.2.0.a.2.dynamic.cust.swisscom.net [IPv6:2a02:1210:2c9b:e200:e53f:2b23:e03c:72d8] (may be forged)) (authenticated bits=0) by upstairs.ofcourseimright.com (8.18.1/8.18.1/Debian-2) with ESMTPSA id 63U3rY3k1886748 (version=TLSv1.3 cipher=TLS_AES_128_GCM_SHA256 bits=128 verify=NOT); Thu, 30 Apr 2026 05:53:34 +0200
Message-ID: <2890cc75-cba8-4caa-9692-9bb0ce944d06@lear.ch>
Date: Thu, 30 Apr 2026 05:53:33 +0200
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
To: Martin Thomson <mt@lowentropy.net>, John Levine <johnl@ietf.email>, last-call@ietf.org, emailcore@ietf.org
References: <177735548849.818.15891659530280505461@dt-datatracker-b45949c58-t72jx> <CALaySJLPRjnhP_SRCoKdBuHZkMsLYcQB5g-Pf3ra14mqYG86tg@mail.gmail.com> <5d69c4a4-e16c-4c0b-bb0e-09887d062da9@lear.ch> <CABcZeBOK0wR5i1Y9Lxa6JzgF6nxzLU25pZa4Sida01VaowBGGA@mail.gmail.com> <fc87c6da-4c02-4030-84f1-092a8511c5c3@lear.ch> <CABcZeBP5q4kWtSXYhkStC7Yc-OYmVNfEJ4Dn7Ef_RNf_g74ucA@mail.gmail.com> <16e19e54-7f69-4ecc-a5f0-dcffd7a0d3b2@lear.ch> <CABcZeBP0e0TS4F_aQvvER+pt87rgGiARudKTEKzD0roEyESvZQ@mail.gmail.com> <8DC02587-26C8-428A-9D88-44AEEFDFE1C2@episteme.net> <CABcZeBMRsVsBnvbW_g0aR8M80RcQ0QWHqYxQk5dK_9-Dm1Tccw@mail.gmail.com> <20260430022538.CC3ED106EE3EA@ary.qy> <CABcZeBOOPf-Te7wGZV97sWf=XLW8_mTiZS0x30EfufB0Omr7hw@mail.gmail.com> <20260430030207.545AA106EF6A5@ary.qy> <b35ae5d5-fa7b-4734-8295-7773b9aa8bdc@betaapp.fastmail.com>
Content-Language: en-US
From: Eliot Lear <lear@lear.ch>
Autocrypt: addr=lear@lear.ch; keydata= xsBNBFMe1UQBCADdYOS5APDpIpF2ohAxB+nxg1GpAYr8iKwGIb86Wp9NkK5+QwbW9H035clT lpVLciExtN8E3MCTPOIm7aITPlruixAVwlBY3g7U9eRppSw9O2H/7bie2GOnYxqmsw4v1yNZ 9NcMLlD8raY0UcQ5r698c8JD4xUTLqybZXaK2sPeJkxzT+IwupRSQ+vXEvFFGhERQ88zo5Ca Sa1Gw/Rv54oH0Dq2XYkO41rhxQ60BKZLZuQK1d9+1y3I+An3AJeD3AA31fJZD3H8YRKOBgqe ILPILbw1mM7gCtCjfvFCt6AFCwEsjITGx55ceoQ+t5B5XGYJEppMWsIFrwZsfbL+gP31ABEB AAHNGUVsaW90IExlYXIgPGxlYXJAbGVhci5jaD7CwI4EEwECADgCGwMCHgECF4AWIQSY0L2Q Rh2wkqeyYR2HtmtG2dJ6MwUCWxJwMwULCQgHAgYVCAkKCwIEFgIDAQAKCRCHtmtG2dJ6M8KI B/46pFrJX+4Ockl2fHR303ais9Lyx8jv6mXKKOr8WR0UYcJ0syQrhaaZNG1VV98tYQHHK9F5 y7hH4YCsrr3odZ6zoavnx5X1X/2xw8y732f/irVoOOkYLid9IGPxa2e2nYXCZpde5/yvv3we XVE4mG4dEAD5T8iKS4Hz/3fKGJQ15o79Jv92HgC7RpCt0WaiQ0b6acP3PuwjDJzJzLFZzb7j IiB3izxQESSWE1GNRmoAK/k0gW6kmx1/87tQENrK+3Nn4CJSFQWF6entLnY7UeVm95wbMQkJ evwddDWUO2huDbmZnmxgKXGzSSpuNq7n8ICAOlbt0HfdJAZQfy25bwvezsBNBFMe1UQBCAC0 WV7Ydbv95xYGPhthTdChBIpPtl7JPCV/c6/3iEmvjpfGuFNaK4Macj9le20EA5A1BH7PgLGo HOiPM65NysRpZ96RRVX3TNfLmhGMFr5hPOGNdq+xcGHVutmwPV9U7bKeUNRiPFx3YdEkExdd qV2E8FltT0x2FSKe2xszPPHB6gVtMckX5buI9p1K3fbVhXdvEkcYY/jB0JEJGyhS5aEbct5c HUvDAkT81/YFK5Jfg8RRwu1q1t1YuIJSOWAZQ9J9oUsg6D9RpClU+tIFBoe3iTp1AUfJcypu cGKgLYKtpu/aygcpQONHYkYW5003mPsrajFhReVF5veycMbHs4u5ABEBAAHCwF8EGAECAAkF AlMe1UQCGwwACgkQh7ZrRtnSejOSuQgA27p2rYB7Kh20dym6V8c62pWpBHHTgxr/32zevxHS iXl6xvUCg5T8WUwfUk8OvgDcBErK/blDAMXQzSg3sp450JhR8RnXHXF5Zz2T04X7HnlIVJGw f2CjnwyEAJCqMzaCmI+g3Imvg/8L4nyBFvhlFHDv+kIvMiujyycjPAu7xxKplBs1/IEwmDoA MjneFmawvfeQnwdMhSKK8PjKSuzGU5uUmxj3GBfRqvTM0qpmhMPFOmDhJSmH55HLAky2Mlmq JYXJPt/9EfSEhFiua1M6gLiuNEuPkp+8jcnHQqKr0IeHt8UqcwLt2mGfIyl0FVdF9hvWPjNR zGbgqoT1Di03RQ==
In-Reply-To: <b35ae5d5-fa7b-4734-8295-7773b9aa8bdc@betaapp.fastmail.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------x2jmM3L8QMgIW5Fczz980Uo9"
Message-ID-Hash: A3M65HLA247QQ5Y2ZQR5Y7KIFER2UEKU
X-Message-ID-Hash: A3M65HLA247QQ5Y2ZQR5Y7KIFER2UEKU
X-MailFrom: lear@lear.ch
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Eric Rescorla <ekr@rtfm.com>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Emailcore] Re: [Last-Call] Re: Re: draft-ietf-emailcore-as-28 ietf last call Secdir review
List-Id: EMAILCORE proposed working group list <emailcore.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/emailcore/dFahfayAoDdy9Mw_c-CSrfYSMn0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emailcore>
List-Help: <mailto:emailcore-request@ietf.org?subject=help>
List-Owner: <mailto:emailcore-owner@ietf.org>
List-Post: <mailto:emailcore@ietf.org>
List-Subscribe: <mailto:emailcore-join@ietf.org>
List-Unsubscribe: <mailto:emailcore-leave@ietf.org>

On 30.04.2026 05:31, Martin Thomson wrote:
> It would seem that the consensus that existed at the time of RFC 3207 (published 2002) no longer exists.

I'm not sure what you think that means, but I don't think it takes us 
down a productive avenue.

I haven't heard a single person say that we *don't *want people to 
implement STARTTLS.  I haven't heard a single person say that we don't 
want people to use STARTTLS.  The AS takes a large step toward requiring 
implementors to implement STARTTLS, senders to use STARTTLS.  It lets 
operators reject messages that don't use STARTTLS; but it also let's 
operators do the opposite for interoperability purposes, so that their 
users don't lose mail in the transition.

Consider this: we are otherwise likely to land in a place where the 
status quo of NOT requiring STARTTLS will be kept.  Is that really what 
you want?

Eliot