[Emailcore] Re: [Last-Call] Re: Re: Re: Re: Re: Re: Re: draft-ietf-emailcore-as-28 ietf last call Secdir review

Rob Sayre <sayrer@gmail.com> Thu, 07 May 2026 22:52 UTC

Return-Path: <sayrer@gmail.com>
X-Original-To: emailcore@mail2.ietf.org
Delivered-To: emailcore@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 984DFEAE4FF1 for <emailcore@mail2.ietf.org>; Thu, 7 May 2026 15:52:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1778194352; bh=S1RWbXslF+PFxk/GWn/3cy+M4SVG0Uh2XJ7iDO6dkOI=; h=References:In-Reply-To:From:Date:Subject:To:Cc; b=EwElXxDAqFHiSp/e3WVJVh5ijEI7xGpPxgdkQK25AdT4B6opEYp+CJS5etCAmQLHC mNlfAo1GbONIDnuFiO4fj3oxkgomsjR9sJxJ3ZJaJ2DOulLqgogR1uphkxTC241ts6 E7kY0yFQUTPYnTqltRJpvq7H5rnLUC4F6OMd6kqc=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BPTVh-wZJ0cS for <emailcore@mail2.ietf.org>; Thu, 7 May 2026 15:52:28 -0700 (PDT)
Received: from mail-pl1-x62b.google.com (mail-pl1-x62b.google.com [IPv6:2607:f8b0:4864:20::62b]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 702B0EAE4F5E for <emailcore@ietf.org>; Thu, 7 May 2026 15:52:12 -0700 (PDT)
Received: by mail-pl1-x62b.google.com with SMTP id d9443c01a7336-2baef9f5ecdso607065ad.1 for <emailcore@ietf.org>; Thu, 07 May 2026 15:52:12 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1778194331; cv=none; d=google.com; s=arc-20240605; b=OKrDmIVOAeNDdDD1xCNma2Q35fKMLd6ukhU32iCaetHxUdt2zYa/irzP8sDaUH9wuk nsrf2KuGKYJQt/k5d0ieQ5uiGLWv0tYc2YVEby45HRInJR5F2wZiPPtDbdSkpT9GtCBK DqmBfyNHyDmNuFPEwzO6tBAVSFbTF4gZ8cHdItM3HPRT15ZVz6JOR2o+WQj5xrCW/nPj /dXxPieYYzcKWMUBy58ZJKqCFrxaLpeMJoA/F4NZyMxQmuUKlagSQPj61OzQeN7NKHNA OCWmreyzFJnPHNSenmzrp1MdoVb6kl6ixz1nnP83JMyk3CchVJMYNoTKB67938Xmo2qm Rfiw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=GG60vgnqDAXwRh5sPswm8GNA/ShzGbjHbdrFY5x/+LQ=; fh=NjJ9boBkTBslkXru9CWlAU+40CKrx22tZ7rV989oWGM=; b=j50X4luSbgv1C8b2tKnUGmyg7Da/xSoLOQcXb6welUAWd6XLNPhynwE9q3AfskfQjX OAX3GL0jIOVLhYngsByftC5Z/VAtr9lJwL1X01rcplr6vMTWLB9KvjFchhzjcebDVmYa ai8YZbCZB7nhMZQf/Ngu2quljlaYoNx+KWF5Z3z5nlT28o2wx1mfsGhqCyIJ9Zc3djnE jHK/GSdzlLESAHtJAlp8snpf6EbmhR8Ewp1Zfd+y4CcTk3BXgvHFS36UculIck+eMbKP TswaWr+m6YzxVsuhFdJy/nA45kfWMGG1Ihd2hYsrhG2L9xeYSrmJVz+YRQi9QM50wLOv mCMw==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1778194331; x=1778799131; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=GG60vgnqDAXwRh5sPswm8GNA/ShzGbjHbdrFY5x/+LQ=; b=LUvbKEHbd/Q9rIIry8HiqEx/f7g4Cb98kGpyFcAhyJl/sRuHk7xDTDkBPGdS3ztXqS YxVxQaHTMEbyrdUeQIeCEOuWUgiF2y5ZTjsFlmwNC8osCKRCnhh2SaZftWFBbyIq3RgU 8tJajU2rdine3RV+pcJMYBG4BbOWPBJU1RTHIOp1dbqsAprAGQTBrwP/vYhHCAzLP+ow BnEVl/DL65kSwmowLnaYXDiMwuAHw6bojc+XRyLNfxY9sSfX66YSIkPaV28Za+4EJIs+ zcIqUbDENOWot2s+09HK5bRS5a9M0Xc1GMiZvRa23CPE2CKEF+bR9i/Dcgf/pShlmrto 5VWA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1778194331; x=1778799131; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=GG60vgnqDAXwRh5sPswm8GNA/ShzGbjHbdrFY5x/+LQ=; b=QQMjCua+qy2t7IHkGQXcPaafdiYl+mi/TXPnFzKYtdSi3N2oI/B8ghpHuSN8KVbqw+ 70SYWEAegN+6mDBVFnFHL0EzolmO/lwGOj44eS/79B/g6/UwW8XFis+0wLzsNv3857sW ex2rPOMBslGw0qmaYnorEZWOn29lAL2cQ5TeNC4sybUjO8b8f/ONW31K2M3cP6ttW3A8 w6G0yfTTQLEoGlsSHywoWccQgh/X0Ev5nNKwpmw3lBUp05IBdLmlxOsnpwAnRkKvTFLB n4Uz3SFraoxneNx7DF7Xh1yscxPwBfXjeFmOu8WGkadKS1EKBtg7I9emfM9042KhBL9o 7KDQ==
X-Gm-Message-State: AOJu0YwJHwzfk/leQ46iRgftKWCaUHhcPFDnElsDg3hkOeGCl6S2RbGm Co5TruHGIpWry9fznpa7/lfCH6wRjmNKtO9JB6Qhz8vxMnHp5w8JaiG+OlLSvRh4uBm/+J2USWs FiO8jCdozw4jKtR19+mFcFsoZRIfqAffHwKtZ
X-Gm-Gg: Acq92OHYL8z9iwv1swFlYnW39jlHTiJ/a3vpCuw+mRer3SS/dTrR44S8DJ8AsMHVDP+ bkeCvxNJ1RH9tErEdxRLN4paXty+vQm+Gsm8DwDFD81jAqCY2uPNmNLqmKzMroOGf7YZrTeNjIL e4aevUsnjU6taIQ+3KboYA/y0y08rQ6ETYOpzE+WsM1WYm3AIm7jy/ijctLPYKSUO5k/qTTtaCo v3p7VZs1AVtfFLxxFjcBt2jt4J3Dd9vF+vFJgMhLoFJIN8GFExzDDtRng5uLjQAXMrt/wnWWr/m 0VvFXf+36ZL70j68DjPOC/41d1bs0qzsR661DGEWA2dsY3Gx29g=
X-Received: by 2002:a17:902:fb43:b0:2b2:489a:f46a with SMTP id d9443c01a7336-2ba798d2797mr71964815ad.36.1778194331314; Thu, 07 May 2026 15:52:11 -0700 (PDT)
MIME-Version: 1.0
References: <CAChr6Sy4RJ66gUXR=U9GbKjEu-+7z5EFZVDtqPbtrkomPfoK_w@mail.gmail.com> <CALaySJKOiAN+=xEV+yf4sJuVJM19chXa3BFsxTQ-LCfq1dCELQ@mail.gmail.com>
In-Reply-To: <CALaySJKOiAN+=xEV+yf4sJuVJM19chXa3BFsxTQ-LCfq1dCELQ@mail.gmail.com>
From: Rob Sayre <sayrer@gmail.com>
Date: Thu, 07 May 2026 15:51:59 -0700
X-Gm-Features: AVHnY4IGovBMbrtOySlQni4eIfNQZRpWe8CIugBleXIhVBvgfR3vB0CPluns798
Message-ID: <CAChr6SwrbK5OA+kitjHO6qH1PUcuMtm5vZXTdmMQDh6M0tEvFA@mail.gmail.com>
To: Barry Leiba <barryleiba@gmail.com>
Content-Type: multipart/alternative; boundary="00000000000075aefc06514221da"
Message-ID-Hash: NUXHA2WS4LFDD7E3FGNEBJ5LQXYRRZ2Y
X-Message-ID-Hash: NUXHA2WS4LFDD7E3FGNEBJ5LQXYRRZ2Y
X-MailFrom: sayrer@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "emailcore@ietf.org" <emailcore@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Emailcore] Re: [Last-Call] Re: Re: Re: Re: Re: Re: Re: draft-ietf-emailcore-as-28 ietf last call Secdir review
List-Id: EMAILCORE proposed working group list <emailcore.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/emailcore/zwhgFiTijhF1n5pyJ6Lyi-G46IM>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emailcore>
List-Help: <mailto:emailcore-request@ietf.org?subject=help>
List-Owner: <mailto:emailcore-owner@ietf.org>
List-Post: <mailto:emailcore@ietf.org>
List-Subscribe: <mailto:emailcore-join@ietf.org>
List-Unsubscribe: <mailto:emailcore-leave@ietf.org>

On Thu, May 7, 2026 at 3:17 PM Barry Leiba <barryleiba@gmail.com> wrote:

> > > We know from Richard Clayton's recent message that 16% of the hosts
> that talk to
> > > Yahoo's giant mail system don't do TLS,
> >
> > >  Why are we even having this argument?
> >
> > Because you don't understand that the large ones will want to accept
> cleartext email while narrower installations will not.
>
> But that's exactly the point the document is making:  It needs to be
> configurable to accommodate BOTH.


Ah. that might be the disagreement. It does not need to be configurable to
be a permissive service. That requirement is an attack surface.

Eliot has a point I agree with:
> We should not tell coders what is configuration and what is code.
https://mailarchive.ietf.org/arch/msg/emailcore/1s4_JWP359hyaRw51DauS9fGcGc/

I've hit this one myself in HTTP, I wish it just didn't have the cleartext
path:
https://mailarchive.ietf.org/arch/msg/emailcore/bxiDbosHvI_TWCsxAlWsARQ3BOk/

There, a non-conformant client exercised a codepath that shouldn't have
been there. That's all real code run by billions of people, and I found it.

And I went to the trouble of doing a Postfix implementation with no
cleartext configuration. [0]

All of this just to say we should delete the last paragraph of Section 6.5
and publish. I'm not asking for strict requirements to be added.

thanks,
Rob

[0]
https://github.com/sayrer/postfix/commit/4d12d04ea69f89e021c74d70a9af464411d0a27a#diff-48e549783fcfddf2329fcbe3549df5d60982698764a4234b330f4066719e6526R29