A Retrospective on Future AntiSpam Standards - PowerPoint PPT Presentation

1 / 10
About This Presentation
Title:

A Retrospective on Future AntiSpam Standards

Description:

Beijing September, 2004. Dave Crocker. Brandenburg InternetWorking ... D. Crocker, Brandenburg InternetWorking ISOC China Beijing,Saeptember 2004. 2 ... – PowerPoint PPT presentation

Number of Views:88
Avg rating:3.0/5.0
Slides: 11
Provided by: davecr2
Category:

less

Transcript and Presenter's Notes

Title: A Retrospective on Future AntiSpam Standards


1
A Retrospective on Future Anti-Spam Standards
  • Internet Society of China
  • Beijing September, 2004
  • Dave Crocker
  • Brandenburg InternetWorking
  • lthttp//brandenburg.com/current.htmlgt

2
Retrospective on the Future
  • Spam is complex, confusing and emotional
  • Imagine that time has passed
  • What changes will be important?
  • Email
  • Will it still be easy to reach everyone?
  • Will it be cumbersome, with fragmented
    communities?
  • Spam
  • Legitimate business will behave acceptably
    (mostly)
  • Rogue (criminal) spammers will be worse than today

3
Security Functions
4
What Will Be Standard?
  • Accountability
  • (Author Operator)
  • Authentication
  • Authorization
  • Reputation
  • Filtering
  • Format of rules
  • Reporting monitoring
  • Immediate problems
  • Aggregate statistics
  • Enforcement
  • (Contracts and laws are standards)
  • Terminology
  • Acceptable behavior

5
Email Path(s) Today!

MSA
MTA
MTA
MTA
PeerMTA
MUA
MTA
MTA
MTA
PeerMTA
MTA
MTA
MTA
Mail Agents MUA User MSA Submission MTA
Transfer MDA Delivery
MTA
MDA
MDA
MUA
MUA
6
SPF and Sender-IDAuthor Path Registration

Assigns Sender MailFrom
oMUA
MSA
MTA1
Did MSA authorize MTA1 to send this message?
MTA2
Did MSA authorize MTA2 to send this message?
PeerMTA
  • Authority and Accreditation of MSA and MSA domain
    administrators
  • MSA must pre-register and trust each MTA in path

MTA3
Did MSA authorize MTA3 to send this message?
PeerMTA
MTA4
MDA
rMUA
7
My Personal Favorites
  • Validate content
  • DomainKeys
  • Public key signature of the message
  • Validate operator
  • CSV
  • Operator validates MTA
  • Validate MailFrom
  • BATV
  • Reputation
  • CSA DNA (CSV)
  • Reporting
  • No candidates, yet
  • Enforcement
  • We are still learning

8
Client SMTP Validation Assess Peer MTA
MUA
MSA
MTA
  • Does a domain's operator authorize this MTA to be
    sending email?
  • Do independent accreditation services consider
    that domain's policies and practices sufficient
    for controlling email abuse?

MTA
MTA
Peer MTA
MTA
MDA
MUA
9
CSV Functions
10
How to Choose the Future
  • Look at each choice
  • Who must adopt it? When?
  • How much effort is need to administer it?
  • How much does it change email?

Xie Xie
Write a Comment
User Comments (0)
About PowerShow.com