North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: the O(N^2) problem

  • From: Suresh Ramasubramanian
  • Date: Mon Apr 14 03:38:36 2008
  • Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; bh=cbGv14FHyJWV5dImbLx+Um5iBM9Cu7se3je/FmCCifI=; b=WIcOsOROYC0FqWsfOyYpC9TwGat1mnBuosTtAnK0uo4OfOEmbSozzg8N6GuGxPYtjGw9vakgAwdLb6pCOVd/bgShH5TXRnNRIUj/F2JLf8+3CMjBVuBUJ5aRzSVE1m0e0h/6Imj67PTzjbbpjqbI6uq2a5Ab/ByiK7I4BtzQT7w=
  • Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=EaAnjqR+K1OT9xHzCAb2WOjIbm1p7k+IljzUglCGCfN9/XdywUHNvHwDCZ4VnLaue0x7lG5PZd+3qmns4B72FqMYyIvcXVVb1Wk4g7yJOyoJ5tO73K067ELUPH05F/MoiGQhbJtlcr1VZvieOAhZvbdUQUEXJAqJ6Kk8W+KVZYE=

On Mon, Apr 14, 2008 at 11:50 AM, Steven M. Bellovin
<[email protected]> wrote:
> The risk in a reputation system is collusion.

Multiple reputation systems, each with their own reputation ..  Sed
quis custodiet ipsos custodes and all that ..

A lot of the "reputation" (aka "positive reputation") shall we say
work is heavily sender / ESP / bulk mailer etc driven.  And the
negative reputation stuff (blocklists like spamhaus etc) have been
around rather a long time.

So quite a few ISPs tend to rely on trusted negative reputation
systems (aka they'd use spamhaus) and build positive reputation
(whitelists) on their own, possibly tying this to auth systems such as
dkim.

--srs
-- 
Suresh Ramasubramanian ([email protected])