ietf-asrg
[Top] [All Lists]

Re: [Asrg] seeking comments on new RMX article

2003-05-06 23:22:41
On Tue, 6 May 2003 22:30:11 -0700 (PDT) 
Mike Rubel <asrg(_at_)mikerubel(_dot_)org> wrote:

You are attempting to recreate top-down authority structures when
the natural (and proper?) tendency of the field in normal
legitimate use is for self-authenticating/identifying nodes, not
external nomination systems.

But RMX isn't top-down at all!  

Sure it is.

Each domain configures its own RMX records, on its own name servers,
to authenticate its own outgoing mail.  

Right, with the implicit assumption that each domain validly controls
all mail sent in its name, or has reasonable control and expectation
that it can or even should be able to control all mail sent in its name.
I find those assumptions to be unsupportable and destructive.

There is no new central authority.  

Sure there is, you're naming the holders of the DNS keys as the central
authority for the domain.  Not good.

I'm not sure what you mean by "external nomination system."

DNS, as a system, is external to the edge nodes that generate mail.  It
is a nominative system in the very simple and direct sense of the word:
It assign authority by naming.

  "FOO is authorised to do XXX because I name FOO as being on the list
  of those who can do XXX."

Now, can we move on to digging out a proposal which has a chance of
being useful instead of beating dead horses?

With all due respect, I think it's the fastest horse of the bunch
right now.  

<shrug>  Its a question of thresholds.  

But my mind is open--please feel free to suggest others.  I'm willing
to weigh merits.

I'm partial to the Forward Chained Received: header proposal, but it
suffers significantly from percentage deployment problems (its value
increases exponentially as deployment approaches around 80% before
flattening).  Much as I may like the idea, that single characteristic
likely dooms it.  I'm currently drafting a consent token proposal which
has gotten some running consensus off-list.  I don't expect it to get a
whole lot of traction here as offers nothing at the MTA/transport level
as it is almost purely an MUA-level affair (there's an understandable
focus by the list on server- or transport- side solutions).

-- 
J C Lawrence                
---------(*)                Satan, oscillate my metallic sonatas. 
claw(_at_)kanga(_dot_)nu               He lived as a devil, eh?           
http://www.kanga.nu/~claw/  Evil is a name of a foeman, as I live.
_______________________________________________
Asrg mailing list
Asrg(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/asrg