[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Challenge-response mail filters considered harmful



On 05 Aug 2003 14:29:34 -0400
Mark Roach <mrroach@okmaybe.com> wrote:
> how does challenge response help if I post on debian-user and set my
> From: header to say "Steve Lamb <grey@dmiyu.org>" and rant and rave
> against debian in general and other users in particular? Obviously you
> can't prove a negative there, but it is more believable if you say "it
> wasn't me" if you normally sign your messages.

    Exactly.  His view is that since C-R is required if someone forges as you
then you get the challenges and can take action.  *shrug*  I never said I
agreed with it, just that is what he said.

> So even though it is not a real Internet standard, it indicates that pgp
> is an appropriate measure to "protect against forgeries"

    Yup.

-- 
         Steve C. Lamb         | I'm your priest, I'm your shrink, I'm your
       PGP Key: 8B6E99C5       | main connection to the switchboard of souls.
	                       |    -- Lenny Nero - Strange Days
-------------------------------+---------------------------------------------

Attachment: pgpJkuZCAGiXI.pgp
Description: PGP signature


Reply to: