ietf-mailsig
[Top] [All Lists]

Re: Anonymous signed mail

2004-08-18 13:44:00

Atul,


By way of priming the discussion pump:


ASnc> I was going through the slides presented at IETF-60.  One of the goals
ASnc> listed there was: "Preserve Anonymity if requested by the sender"

ASnc> I had some questions regarding this:
ASnc>   * Won't allowing anonymous mails defeat the anti-spam quality of MASS?

I believe that spam control is about accountability and does not
automatically require directly identifying the agent that created or
posted the message.  Accountability can be quite indirect, as long as it
involves real substance.

By way of an extreme example, if a sender is required to post a US$1M
bond that is at risk if there are complaints against messages from that
sender, then we are not likely to care whether we can directly identify
the sender.  The assumption is that risking that much money will
dissuade rogue senders from doing nasty things that would prompt us to
make complaints.


ASnc>   * What does it mean to have a "signed" anonymous mail?

It means that a responsible agent is doing the signing.  Who that is is
a separate matter.


d/
--
 Dave Crocker <dcrocker-at-brandenburg-dot-com>
 Brandenburg InternetWorking <www.brandenburg.com>
 Sunnyvale, CA  USA <tel:+1.408.246.8253>


<Prev in Thread] Current Thread [Next in Thread>