[77779] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Time to check the rate limits on your mail servers

daemon@ATHENA.MIT.EDU (Adi Linden)
Sat Feb 5 14:11:41 2005

Date: Sat, 5 Feb 2005 13:11:11 -0600
From: Adi Linden <adil@adis.on.ca>
To: nanog@merit.edu
In-Reply-To: <Pine.LNX.4.44.0502051734070.4153-100000@a.mx.ict1.everquick.net>
Errors-To: owner-nanog-outgoing@merit.edu


> Please explain how the "trust chain" does not verify the sending user.
> "Malware will steal username/password" is not a valid answer, as the
> same can apply equally to crypto keys.

Now that we have established a "trust chain" an verify the sending user we
have an easy way (shuffling through mail logs is by no means easy in my
books) for support people to address SPAM complaints.

Even better, due to the verified sender we can now send bounce messages
and notifications to originator. Sure, it'll result in "I never send
this..." type support calls but support can now say "Sure, your computer
did behind your back...".

Adi

home help back first fref pref prev next nref lref last post