Re: [stir] 8224: "end users"

Michael Thomas <mike@mtcc.com> Tue, 28 April 2020 22:41 UTC

Return-Path: <mike@fresheez.com>
X-Original-To: stir@ietfa.amsl.com
Delivered-To: stir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1EB4D3A073E for <stir@ietfa.amsl.com>; Tue, 28 Apr 2020 15:41:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.649
X-Spam-Level:
X-Spam-Status: No, score=-1.649 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.25, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=mtcc-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id plOPnQcWqN1u for <stir@ietfa.amsl.com>; Tue, 28 Apr 2020 15:40:59 -0700 (PDT)
Received: from mail-pj1-x102b.google.com (mail-pj1-x102b.google.com [IPv6:2607:f8b0:4864:20::102b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CE38C3A0736 for <stir@ietf.org>; Tue, 28 Apr 2020 15:40:59 -0700 (PDT)
Received: by mail-pj1-x102b.google.com with SMTP id y6so138525pjc.4 for <stir@ietf.org>; Tue, 28 Apr 2020 15:40:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mtcc-com.20150623.gappssmtp.com; s=20150623; h=subject:to:references:from:message-id:date:user-agent:mime-version :in-reply-to:content-language; bh=2m51Z//yXDOSILmZSZgrR0en90T5cL5MN6w+uKargdY=; b=vK1gI06eIbJz9WQN4fuDEb0EyMZdFEnq9EnQ5HP6fU5F9TxD4dCu9xlKzFGbsIaRZ8 u/CS8C/SQ/bdi/K3QPv0epMxArOJtUyY+Zuzp8PKzpkSi0mbOwQxp8FXkpXy1f55KBUD Gsr0M5nx7ckLs/lFFS25cSiI3Dor2IoIT64dkdsohhKfs4Wtj3xO5EBUKkiw3EAN9T81 XwXVoXrsvogENbUhe6sCotOUI72J+qT7X7HTa4b/0O20gyPtD52jMud4gedwA+kW9Pf+ JIIWXdzsx867RX2JdyIhKI8p5iF4YDAsOYLfqqKFJgsK4UTV+ZuDd8mrvp5O6wYuPxr3 lnlQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language; bh=2m51Z//yXDOSILmZSZgrR0en90T5cL5MN6w+uKargdY=; b=kZZMWapnfGii73Lh1k/8+bfWz0YzM3/EmsOlI8TPDKz5lL8Lr9BE16xZofwcbeSIuM YRcnR5rY8qk6xfQg4/90pkFwSM6fMQRT3ntmfBKy8tJ57IEfXPWnUlgr/fsUCgl13XMp dOrWhGfaxZjny+8DRJm5eaIbnObv7dBycMGpGz5vTAmsselWTLJPEiu3o4sSiW5tHxfV P78GijpSGeMKjY8u1u0QVOFw6EgfvnA4VgVniAhDTgfAEHjhsfBkgEHdps2neypPHl8n z6uhnefGt0R6Q430zMStQCFase6g91z5Y1wvS30b82mKOq+vNJObAnTrAwBNMGqdPS5d xguw==
X-Gm-Message-State: AGi0PuYdKr+OMWfSH+BIj6TpnPBdHscvcDe4S/IubohGxl73MD7KCzW6 M2izEq+AW9TkQxZBLpfrlgRSoV+VZ+jvbw==
X-Google-Smtp-Source: APiQypKBUSPGGIwR/OgfafXoCrymxl5MkV3GKAL6LmjpI/dFpikBVaSHgp49YgT3SY4/+OqXSRuemA==
X-Received: by 2002:a17:90a:840e:: with SMTP id j14mr7418962pjn.85.1588113658774; Tue, 28 Apr 2020 15:40:58 -0700 (PDT)
Received: from mike-mac.lan ([170.75.128.30]) by smtp.gmail.com with ESMTPSA id d20sm2905170pjs.12.2020.04.28.15.40.57 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 28 Apr 2020 15:40:57 -0700 (PDT)
To: "Holmes, David W [CTO]" <David.Holmes@sprint.com>, "stir@ietf.org" <stir@ietf.org>
References: <350f7a78-52b6-4c45-5ecf-0d30db8b8f4b@mtcc.com> <MWHPR05MB3487ADAFF745A1D57E622C07F7AC0@MWHPR05MB3487.namprd05.prod.outlook.com>
From: Michael Thomas <mike@mtcc.com>
Message-ID: <0ac233a9-ac5c-3cda-3a18-b4ba39244bfc@mtcc.com>
Date: Tue, 28 Apr 2020 15:41:02 -0700
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:68.0) Gecko/20100101 Thunderbird/68.7.0
MIME-Version: 1.0
In-Reply-To: <MWHPR05MB3487ADAFF745A1D57E622C07F7AC0@MWHPR05MB3487.namprd05.prod.outlook.com>
Content-Type: multipart/alternative; boundary="------------95DD0D71C1A83A961B7956BF"
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/pAsm0P7zWd9aWTmu7e_cSvHGFgw>
Subject: Re: [stir] 8224: "end users"
X-BeenThere: stir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/stir>, <mailto:stir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir/>
List-Post: <mailto:stir@ietf.org>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/stir>, <mailto:stir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Apr 2020 22:41:01 -0000

On 4/28/20 3:29 PM, Holmes, David W [CTO] wrote:
>
> Michael,
>
> I believe you are referring to the issue of “reputation”; which is a 
> commercial/legal concept & way beyond the purview of any technical 
> standards group to verify.  Validation of the ID of the originating 
> party as described is only one factor that may be used, along with 
> other factors with others as you note, to evaluate the reputation of 
> the originator & allow trust of the originator & potentially of the 
> content of the communication.
>
I'm referring to reputation, insofar as that would be one way to vet 
another doman's practices, but that is a side point. My main point that 
I want discussed is that if the document(s) are in any way suggesting 
that the receiving party can trust the user@ from the sending domain to 
actually be user@, that is a large mistake and should be corrected.

Mike