Re: Summary of Issues Raised to date
David Nicol <[email protected]> Tue, 16 Mar 2004 11:24:25 -0600
| Newsgroups | gmane.ietf.asrg.filtering |
|---|---|
| Organization | tipjar LLC |
| Message-ID | <[email protected]> |
Laird Breyer wrote:
>- Spoofed [category] tags. How does a filter deal with them?
>
this sounds like a job for capability keys.
What I mean by that is, instead of the delivered message containing
("bearing") a
token that indicates the grade of it and so on, the delivered message
would contain
a key with which the MUA could look up a grade in the MTA's database of
filter results,
in effect a "book" system for communicating filter results.
A standard would be required for interoperability. There has not been a
lot of
tag forging because the various tagging filters all use their own tags.
(I don't
use a tagging filter at this time except for my cpan.org address which runs
through spamassassin. Is there spam being sent now with forged SA headers?)
With a standard way to specify an identifying key (the individual
mesasge IDs from
POP would work just fine) we just push the standardizing of the
declarationof the filter results
to what the MUA gets in return for presenting the key. No gain really.
A better way might be to have a filtering MTA flatly refuse to accept
any mail in that
is already displaying the filter headers of the kind that it will add
(unless of course
it is a trusted peer, and we do _NOT_ specify a way to automate
aquisition of trust)
Implementing such a refusal policy would require filtering MTAs to
differentiate between
internal and external delivery
So all in all I don't think I've added anything to the discussion with
this post.
Carry on
Another general solution
--
[email protected].
"Once I tried to answer e-mail in the morning, but all I could manage
to say was 'you are an idiot' so I swore off the practice" -- Elizabeth Woods