Daniel Dreymann wrote:
> On Dec 15, 7:04 am, Michael Ströder <[EMAIL PROTECTED]> wrote:
>> Daniel Dreymann wrote:
>>
>>> CertifiedEmail is a third- party signature system. First we accredit
>>> senders to establish wether they are good players with a good email
>>> reputation. Then, once they are accredited, we certify *individual*
>>> messages,
>> But this initial accreditation is done once.
> 
> The accreditation is done once (like a CA) but, unlike a CA, we stay
> in the loop: we control usage (we dispense the tokens) and monitor
> complaints in real time (feeds from the mailbox providers) so we can
> take immediate action and shut down a compromised sender.

I can't see any real advantage over using S/MIME with checking CRLs. 
Again: The whole issue is not a technical one. I consider the technical 
issue to be solved e.g. with S/MIME. It's an operational/organizational 
issue.

Ciao, Michael.
_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to