Re: [ietf-822] WSJ/gmail/ML, was a permission to...

Alessandro Vesely <vesely@tana.it> Wed, 07 May 2014 10:10 UTC

Return-Path: <vesely@tana.it>
X-Original-To: ietf-822@ietfa.amsl.com
Delivered-To: ietf-822@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 89E0D1A06C2 for <ietf-822@ietfa.amsl.com>; Wed, 7 May 2014 03:10:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.073
X-Spam-Level:
X-Spam-Status: No, score=-3.073 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HELO_EQ_IT=0.635, HOST_EQ_IT=1.245, RCVD_IN_DNSWL_MED=-2.3, RP_MATCHES_RCVD=-0.651, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id I_PCdf4ky4pB for <ietf-822@ietfa.amsl.com>; Wed, 7 May 2014 03:10:45 -0700 (PDT)
Received: from wmail.tana.it (wmail.tana.it [62.94.243.226]) by ietfa.amsl.com (Postfix) with ESMTP id 0CACC1A06B8 for <ietf-822@ietf.org>; Wed, 7 May 2014 03:10:44 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=tana.it; s=beta; t=1399457440; bh=qXI0/2kf52o6sIlPUGUp/kaFyWf3C8D1T+YdDX5NegI=; l=997; h=Date:From:To:CC:References:In-Reply-To; b=XnE8J4LQ5NejJl7YYXdCy7HLYuybJOEf1KYn6VuJoH5yc7tbiseSYbg1aAzfy/7yR I8DprcDa6Bmm5twzgU12ST84l9E+6LBQMXAqD4dJnajJLcTkSGiM2MAVL7g+khmhkD LhOqySuf7lZGAqDRRUACkt5uNz7ohJEYfNOYI7Cc=
Authentication-Results: tana.it; auth=pass (details omitted)
Received: from [172.25.197.88] (pcale.tana [172.25.197.88]) (AUTH: CRAM-MD5 uXDGrn@SYT0/k) by wmail.tana.it with ESMTPA; Wed, 07 May 2014 12:10:40 +0200 id 00000000005DC033.00000000536A06A0.000046FC
Message-ID: <536A06A0.4070601@tana.it>
Date: Wed, 07 May 2014 12:10:40 +0200
From: Alessandro Vesely <vesely@tana.it>
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:24.0) Gecko/20100101 Icedove/24.4.0
MIME-Version: 1.0
To: Brandon Long <blong@google.com>
References: <20140418123721.3610.qmail@joyce.lan> <5365357D.2020101@tana.it> <CABa8R6tSpasb7od7ixQXLXnV0Q+3jFNPVKAw+-+Fd_7traumiQ@mail.gmail.com> <alpine.BSF.2.00.1405050957230.56860@joyce.lan> <CABa8R6t4QK2qKw-5pJpMTnqCPWCyus=u8D+BoYRamhQbT=sBHA@mail.gmail.com>
In-Reply-To: <CABa8R6t4QK2qKw-5pJpMTnqCPWCyus=u8D+BoYRamhQbT=sBHA@mail.gmail.com>
X-Enigmail-Version: 1.6
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Archived-At: http://mailarchive.ietf.org/arch/msg/ietf-822/GMjFjsO5qA9IDpka8Xaq9n-BSiA
Cc: ietf-822@ietf.org
Subject: Re: [ietf-822] WSJ/gmail/ML, was a permission to...
X-BeenThere: ietf-822@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Discussion of issues related to Internet Message Format \[RFC 822, RFC 2822, RFC 5322\]" <ietf-822.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf-822>, <mailto:ietf-822-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf-822/>
List-Post: <mailto:ietf-822@ietf.org>
List-Help: <mailto:ietf-822-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-822>, <mailto:ietf-822-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 May 2014 10:10:46 -0000

On Tue 06/May/2014 19:34:52 +0200 Brandon Long wrote:
> 
> OAUTH2 SASL is almost an RFC, but using it still has scaling issues
> for clients, in that there is no discovery/registration protocol
> yet.  Theoretically, once all that is accomplished and implemented,
> trying to authorize smtp-msa from one account to another via the
> web would be as simple as an ACL pop-up that you can agree to.
>
> Clearly, that level of interop is a bit further away than we'd want
> any solution to the DMARC issue.

Except that OAUTH can also be used to authorize ML subscriptions with
the participation of the subscriber's mail server.  Knowing the [user,
list] pair, the server can apply weak signatures or whatever other
solution we'll find for the DMARC issue.  Other advantages over COI
include:

* Define a folder to store list mail at subscription time, and

* a real list of subscriptions, instead of a time-distributed
  database of reminders.

Ale

-- 
http://fixforwarding.org/