ietf-asrg
[Top] [All Lists]

RE: [Asrg] Economic methods for controlling spam (was [Yet another] article on spam)

2003-05-25 14:05:09
At 10:53 AM -0700 5/24/03, Howard Roth wrote:
Tax permanent. Hmmm.  Joking aside, if I wanted to set up a legitimate
business on the Internet I think that paying for a list of opt-in email
address is cost enough to market.  As the cost of legit names will be much

I've yet to see anyone describe a manageable system whereby a paid-for list will remain "opt-in" for long. The needs of the buyers tend to diverge from the wishes of the recipients.


My approach to Email SPAM would be addressing a way of turn it off.  I see
this as being done via a technology solution and legislation.   Just like
the Phone SPAMer who calls me up, I want to be able to say, "take me off
your call list" and be assured that this will happen.  Right now it ensures

But it doesn't work that way with phone spam. They can call back in a year, and they often call back before then. Even the opt-out lists have time-outs--you have to renew them.

Furthermore, the economics work against this solution. There are literally millions of businesses in the world who would love to have you as a customer. Just how many times do you want to opt out?


What about assigning a secure certificate to each Email user (email address
is part of cert) that is attached to a service provider or IP address. The
certificate is sent with the message (attached to what part is to be

First of all. You seem to think that email goes directly from sender ISP to recipient. It does not.

Could a scrupulous SPAMer send messages from China without a certificate?
No.  Could they fake a certificate?  This would need to be made difficult,

Why fake a certificate? There are plenty of Chinese ISPs who have absolutely no problem with people sending spam.

it.  Complaints would be sent to a specific body ( such as the certificate
authority, FTC, Direct Marketing Assoc. etc.) who in turn would add the IP
to a black list.  If a valid Black list is maintained then there may be no
need to revoke certificates.

Ah. Now we have a central authority providing a black list of IPs that violated the policy. Of course before anyone can be added you are going to have to have a dispute mechanism. Imagine the cost of handling a dispute between someone in the U.S. and a Chinese ISP. You get into fights over whether I signed up for the list, whether it really was spam, whether I opt'd in to a list you bought (see my first reply). $.99/certificate isn't going to come close to covering the costs.


--
Kee Hinckley
http://www.messagefire.com/          Junk-Free Email Filtering
http://commons.somewhere.com/buzz/   Writings on Technology and Society

I'm not sure which upsets me more: that people are so unwilling to accept
responsibility for their own actions, or that they are so eager to regulate
everyone else's.
_______________________________________________
Asrg mailing list
Asrg(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/asrg