Re: mail signing history, was Call for Community Feedback: Retiring IETF FTP Service

John Levine <johnl@taugh.com> Wed, 18 November 2020 21:19 UTC

Return-Path: <johnl@iecc.com>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 660B63A0CBB for <ietf@ietfa.amsl.com>; Wed, 18 Nov 2020 13:19:44 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.85
X-Spam-Level:
X-Spam-Status: No, score=-1.85 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.25, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=iecc.com header.b=dhdPwTo8; dkim=pass (2048-bit key) header.d=taugh.com header.b=HDSVvdME
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Jlbz_qJHZb91 for <ietf@ietfa.amsl.com>; Wed, 18 Nov 2020 13:19:43 -0800 (PST)
Received: from gal.iecc.com (gal.iecc.com [IPv6:2001:470:1f07:1126:0:43:6f73:7461]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C01E13A0CBA for <ietf@ietf.org>; Wed, 18 Nov 2020 13:19:42 -0800 (PST)
Received: (qmail 7951 invoked from network); 18 Nov 2020 21:19:37 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:cleverness; s=1f0c.5fb58fe9.k2011; bh=beqqjGYUAqTD7v1kOJfNyEAe3JNPWgSLhD3JhqiGNVU=; b=dhdPwTo8mgzro9xCDza2GBY+9HwSwS+FxssH0T4mAAwmmwmsXzmoljVcob77j/e860XotB4wX1g4kVUcGglLKR+RL0wBSKx/ASRzRUFWMzxK9K9VfrMHScB3PofiWAGu55ATSnb4tlSZZTiCYCu57wGk0r2DI8joyo4CGBZ2xdp6pCrk6rcu4ECmZnZu4uCr19em8TbzeIb7W0ouvUmTuxN5//uQ3V4EnNlUh9g59FRmO8nZTyqxGri+M+k8jiEyHamJFtu33Y+L+HU3a5q07X4s2jCVQ46Z4YXHnuhmnSzxztkAnwPvXV9igZIAVxnmcsIHMdr2S8saHjqWBQvbHQ==
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:cleverness; s=1f0c.5fb58fe9.k2011; bh=beqqjGYUAqTD7v1kOJfNyEAe3JNPWgSLhD3JhqiGNVU=; b=HDSVvdME0dWITDDk9rw7FlsCT7ESiA01fHbLaNFbpRZIEiP+9gNlB9Ll+sg3AkFw79eGC1w/EyOf6TBpBhpSzisfZ6h2AqVa4BqkEpVm/LkEkkHnOZKr46I793F7GRV+fpTBKO62IVqek1WQZrakIbRKwxAVn1Y1t7zMnWIsJoZUxWAu3MIm37Wn2QOpnImmMN79uhVNu6r3h3hYvViXy+TU5La2dxpg453t7EOChw7boSkOBM5GMqTqgmfwm2kD86N2XFaNu7So2y+ssIr2+9iEObbeNpy2SH7WI8aBss70Dhvr4UvivKqRDNIsc6h6xYq7StXMn5I+p/MbHUB08A==
Received: from ary.qy ([IPv6:2001:470:1f07:1126::78:696d:6170]) by imap.iecc.com ([IPv6:2001:470:1f07:1126::78:696d:6170]) with ESMTPS (TLS1.2 ECDHE-RSA AES-256-GCM AEAD) via TCP6; 18 Nov 2020 21:19:37 -0000
Received: by ary.qy (Postfix, from userid 501) id 01A22278DC6F; Wed, 18 Nov 2020 16:19:36 -0500 (EST)
Date: Wed, 18 Nov 2020 16:19:36 -0500
Message-Id: <20201118211937.01A22278DC6F@ary.qy>
From: John Levine <johnl@taugh.com>
To: ietf@ietf.org
Cc: ned+ietf@mauve.mrochek.com
Subject: Re: mail signing history, was Call for Community Feedback: Retiring IETF FTP Service
In-Reply-To: <01RS5CFAY5S0005PTU@mauve.mrochek.com>
Organization: Taughannock Networks
X-Headerized: yes
Cleverness: minimal
Mime-Version: 1.0
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf/m1t1FN1NieRStepm7-BClBoFw1s>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 18 Nov 2020 21:19:44 -0000

In article <01RS5CFAY5S0005PTU@mauve.mrochek.com> you write:
>More specifically, we developed DKIM/DMARC as an anti-phishing measure for
>commerical email. It was never intedned to be used for personal email, but
>Yahoo deployed it in the personal email space and others have followed suit on
>a massive scale. As a result a significant and growing percentage of email is
>now signed, to the point where privacy experts are calling for DKIM key release
>after rotation to at least partially mitigate the damage we have done.

Urrgh. We correctly expected DKIM to be used for all sorts of mail,
but without expecting the DKIM domain to match the From (other than
the experimental and unused ADSP extension.) DMARC made "aligned"
signatures treated specially, but the signatures didn't change.

What we didn't anticipate is that large mail systems would never
rotate their keys and use the same DKIM signing key for many years, so
you can easily check old messages with old signatures. I suppose it is
kind of a surprise that people use them for non-repudiation, but since
the signatures aren't technically very different from S/MIME or PGP
signatures, it shouldn't be that surprising.

R's,
John