ietf-asrg
[Top] [All Lists]

Re: [Asrg] seeking comments on new RMX article

2003-05-07 06:07:57
J C Lawrence <claw(_at_)kanga(_dot_)nu> wrote:
Each domain configures its own RMX records, on its own name servers,
to authenticate its own outgoing mail.  

Right, with the implicit assumption that each domain validly controls
all mail sent in its name, or has reasonable control and expectation
that it can or even should be able to control all mail sent in its name.
I find those assumptions to be unsupportable and destructive.

  Nonsense.  It's not about control, it's about consent.

  When you receive a message with an envelope 'from' in a domain, has
that domain consented to the use of it's name?  Right now, we don't
know.  With something like RMX, the owners of that domain can make
their consent explicit.

  Your objections appear to be based on the idea that establishing
consent is a bad thing.  Further, you appear to be claiming that a
domain does NOT control the use of it's name (i.e. mail sent in it's
name), and that there's no reason why it should.

  Stated that way, your objections appear ..., well, surprising.

There is no new central authority.  

Sure there is, you're naming the holders of the DNS keys as the central
authority for the domain.  Not good.

  So the people controlling DNS for a domain are NOT, in fact,
authorized to make any statements about the domain.  They're not
authorized to set up RMX records, and most likely also not authorized
to set up existing MX records.  If that's true, why the heck are they
controlling DNS?

  Is this really your position?  The people controlling MX records do
not have authority to add RMX records?

  I think you'll understand that I'm a little confused by what you're
saying.

DNS, as a system, is external to the edge nodes that generate mail.

  The proponents of RMX have specifically and repeatedly addressed the
interactions of "edge nodes that generate mail" with RMX, and thus
DNS.  Please go back and read those statements before repeating
objections which have already been addressed.

  Alan DeKok.
_______________________________________________
Asrg mailing list
Asrg(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/asrg