5 ms·
I appreciate the re-framing of this comment and its parent. Personally I found the original article's argument to feel more like "people shouldn't be accountabl
by tigger0jk 6y ago
I appreciate the re-framing of this comment and its parent. Personally I found the original article's argument to feel more like "people shouldn't be accountable for their correspondence" than "the default mode of email should be more of private secure messaging". Both are advocating for the same changes but only one seems reasonable to me. That may just be my flawed reading of the blog post, but regardless, I can better understand the positions now.
- tptacek 6y agoPeople shouldn't be accountable for their correspondence! That's the whole point of secure messaging!
- yew 6y agoSpeech has consequences. Given the good done in holding rogue "politicians" accountable, not seeing that as axiomatically desirable is at least a little bit suspicious...
- tptacek 6y agoLet's see your mail spool. After all, how else can we know you're not having illicit conversations with politicians that we all deserve to know about?
- yew 6y agoNow you're just spouting non sequiturs. Publication and retention are two separate questions. And not being a politician, and certainly not the one currently trying to hold the White House hostage, I don't see the public interest anyway.
- cortesoft 6y agoI am not following... we are talking about gmail and email in general, not specifically the White House. If you think White House emails should be signed and archived indefinitely, that is one thing. That is not what we are talking about.
- cortesoft 6y agoPrivate emails are not speech. Are you suggesting all private conversations should be public? That seems absurd to me. Do you subscribe to the "surveillance isn't bad if you have nothing to hide" concept?
- yew 6y agoSending death threats or racial invectives by private message is as much speech as sending them by Twitter post. All private conversations shouldn't be published. That isn't necessary to hold people accountable for dangerous or violent speech. Publication and repudiation aren't the same thing.
- cortesoft 6y agoThere is no way to allow the verification of a death threat message without also allowing the verification of political dissidents, for example. Yes, it might make it harder to punish death threats, but privacy is too important to sacrifice.
- deleted 6y ago[deleted]
- tonyztan 6y agoBut emails are meant to be accountable. They are the digital equivalent to sending letters. They should leave paper trails. Just like you have written before, secure messaging should be left to secure messaging apps, not email.
- cortesoft 6y agoWoh, the idea that private letters shouldn't be private is WAY far away from the privacy standards that have been around in liberal democracies for centuries. Mail being secure from surveillance is a foundational freedom. I have no idea where you are getting the idea that we all should have to answer for what we send in private correspondence.
- tonyztan 6y agoLetters and emails are private. DKIM does not change that. This discussion about DKIM is about non-repudiation and the ability to prove that a certain person sent the email. If you send me a letter, I (or someone else who gains possession of that letter) should be able to prove that you sent the letter and hold you accountable for the contents. DKIM does that for emails.
- tptacek 6y agoIf you want to transfer assurance of the authenticity of an email to someone else, you can do so without DKIM; just sign a timestamp or something. The problem with current DKIM configurations is that it provides that assurance to everybody, including strangers who have no business having it. Which is why the ask here is for Google to do with DKIM what OTR does with MAC keys: burn them periodically, so that only people who have explicitly arranged to share authentication do so.
- yew 6y agoThat seems less usable for the average email recipient. Most people who need to prove authenticity to a third party (eg of politically sensitive or offensive messages) aren't techies. Too, it's easy to imagine not knowing you need proof until some time after you receive an email. If it isn't usable and enabled by default, it won't be used in practice - for the same reason almost nobody uses PGP.