[Responding only to list-managers, not to spamtools, because I'm not a member
 of spamtools.]

Ron Guilmette laid out his proposal and asked,

| So?  Any comments?

Yes: how does the proposed central authority make sure that a list whose
owner is attempting to register it is truly opt-in, so that list handles are
not given to spammers and public keys not accepted from them?  Since the list
could not actually send mail out until it has been registered and assigned a
handle, the central authority could not monitor the operation of the list
before making a decision.

Second, suppose a spammer files an application for an opt-in list as a decoy
and gets it registered; what is to stop said spammer from using that regis-
tration on UCE?  The registration would be revoked forthwith, but another
email address + another decoy application = another registration.

DWT

Reply via email to