IM2000 over XMPP
Wes Morgan <[email protected]>
| Newsgroups | gmane.mail.im2000 |
|---|---|
| Organization | Libretech.org |
| Message-ID | <[email protected]> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hi all. I'm new to this list, so I have no idea what has been discussed before (is there an archive? -- I tried im2000-get.1-10, to no avail). Anyway, I was reading some of djb's questions about IM2000 and thinking to myself that many of the issues would be (nearly) solved if the XMPP (a.k.a. Jabber) protocol was used. Here's the scenario I'm envisioning: Both email clients (sender and receiver) are logged on to XMPP servers at their respective ISPs. Now, XMPP IDs are already very similar to email addresses (they only add a 'resource' on the end, so [email protected] is a valid XMPP ID, but [email protected]/Resource is the complete ID. This allows multiple clients to log on to the same server w/ the same auth credentials. This actually works well here because we could have an IM2000 resource that keeps all mail traffic separate from any IM or other presence/messaging traffic). So, the sender ([email protected]) composes a message to the receiver ([email protected]) and clicks Send. The sender's email client then sends a presence packet to [email protected]/IM2000 notifying it that it has a message waiting in [email protected]'s outgoing queue. If [email protected] is offline, the message will be stored by the XMPP server until they log in. Let's assume [email protected] is online and has their email client running. Their email client will immediately notify them of the new message. The client can be configured to automatically download messages from trusted senders, and it can show certain headers or just the subject for unknown senders. If we assume this is an unknown sender, the receiver can now decide, based on the limited information sent in the 'new mail notification' packet, whether to download the message or 'delete' (ignore) it. Popular XMPP clients already have TLS and GPG integration for ensuring transaction privacy and could also be used w/ signing to ensure that senders are who they say they are. Am I off base here? Has this already been discussed? Wes Morgan - -- This American dream may be poisonous Violence is contagious Crowded or empty I walk these city streets alone Whoever brought me here Is gonna have to take me home "What I'll Remember Most" - Over the Rhine - ---------------------------------- Libretech.org - Technology Is Free (http://www.libretech.org) -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQE/U3zTI89ooLagmnQRAghdAKCNzkQIS4JcBBXXCDFgQrNgarKXkACgu/IJ S96AgIXVNhkH34JApbZ0oRg= =plYF -----END PGP SIGNATURE-----