ietf-smtp
[Top] [All Lists]

Re: [ietf-smtp] threat models, guidance on how to secure against sniffing and paid backdoors

2013-09-19 12:35:48
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I don't know how to write such an analysis, and it seems like red tape to me.
I am just advocating that we migrate SMTP to TLS, and then I want a plan
that could evolve into an succesful migration, without hurting
interoperablity.

OK, just tell people to support STARTTLS in their server MTAs, and to
use it in their clients whenever a server offers it.  All done.

If you don't think that's all done, now you have to tell us why not,
which means you need to have a threat model.

R's,
John
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.21 (FreeBSD)

iEYEARECAAYFAlI7NeYACgkQkEiFRdeC/kWKYgCgoRrntuPhwssmwtrw22ZbHmnK
o/gAn0/s5qwPhXmDQGWg+dUH3KZwIl7S
=NW37
-----END PGP SIGNATURE-----
_______________________________________________
ietf-smtp mailing list
ietf-smtp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf-smtp

<Prev in Thread] Current Thread [Next in Thread>