Gmail Will Warn If Message Is Not Authenticated/Encrypted
181–190 of 216 posts
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#182Earlier quoted context omitted.
What about "Your message was categorized fir Bayesian spam filtering and may have contributed to eventual upstream rules" for all those installations that historically ran SpamAssassin? If you're using Gmail or sending to a gmail address[1], you know what you are in for, and if you don't you should at least know that anything you send to someone else is no longer in your control and you have very little control over…
They don't appear to be scanned for Ads, but talk with the Google Marketing team and they will be able to tell you what domains are sending to your competitors if they use Google Apps.
Do you have any source for that claim, or is it just pure libel?
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#183Earlier quoted context omitted.
What alternatives do you suggest, besides running your own mail server? I'm in the invite list for Protonmail and have also used the infamous cock.li for informal stuff, but I was looking for something a bit more established, that I can count on long term stability. It's bad enough to switch email addresses once, to be switching every time a service goes kaput is unacceptable.
What do I suggest in lieu of Gmail or some other large provider that may scan your email? If it really matters to you, your only choice is to run your own mail server. If you don't control your endpoint, then I think no matter what you profess, you don't really care. Personally I just use a combination of Gmail (because I don't care) and a POP/IMAP account at my local ISP (which is not free). If you want free email,…
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#184Earlier quoted context omitted.
Indexing for search != parsing for advertisement.
Once you have to index or parse the email for search, it can no longer be stored as ciphertext, that is, end to end encryption interferes with search. At best, you could search headers if they aren't encrypted. Until a viable ciphertext search scheme arrives. (there are some, but everyone I've seen has some caveat or hole)
I don't think users actually care though. Google's attempt to redefine "end-to-end encryption" to include decrypting something mid route bothered me. This... meh.
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#185Earlier quoted context omitted.
Gmail uses an associated Google+ profile for authenticated emails, so you need both for it to work going forward, I presume. To get started, check https://www.google.com/business/ Outlook uses Facebook and Twitter, if you have these contacts integrated. Yahoo does this too: http://techcrunch.com/2015/03/04/smart-contact-cards-arrive-... There really should be some kind of standard or mail header though. :) Come to th…
You could have your client look up the sender at gravatar?
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#186What's the next step? Do they have DANE https://en.wikipedia.org/wiki/DNS-based_Authentication_of_Na... in mind, or some other initiative to get verified encryption such as "TES" https://openbit.eu/projekte/trusted-internet-services/
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#187Earlier quoted context omitted.
Maybe they have a reputation system in which I've gained a good standing and you haven't. Have you considered that your attempts to game their system have actually been regarded as abuse?
All major email providers do similar things because this is exactly the setup you'd have if you were a spam operation. Email is just something that you shouldn't try and do yourself on a small scale.
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#188This sounds great but Google has been making it harder and harder to run your own mail server even for personal use. I think they would be happy of email servers were only run by a few large companies. They make it sound like they are doing the right thing but really they are bully the industry to do it their way. So many people have Gmail accounts that you can't run an email server that cannot send email to Google.…
I'm in the same boat as you - running a personal/friends/family mail toaster for 16 years now. But I disagree that Google have made the administration harder. Internet mail servers don't live in isolation, and context has always been changing. I have no issue with adapting configuration as expectations change, so Gmail's evolution has never inhibited my ability to exchange email with the world. This move is no differ…
I'm frightened as well that google is taking over email. As long as people rely on web based email, there's no hope for actually encrypting email. TLS is nice, but really, it doesn't mean much. Your email is stored plain text on Google's servers anyways.
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#189Earlier quoted context omitted.
Maybe they have a reputation system in which I've gained a good standing and you haven't. Have you considered that your attempts to game their system have actually been regarded as abuse?
All major email providers do similar things because this is exactly the setup you'd have if you were a spam operation. Email is just something that you shouldn't try and do yourself on a small scale.
Really that's bothers me greatly. Email is the example of a successful open protocol and by all means you should try and do it yourself. The less we are reliant on these giant companies the better and to abdicate email to google just because they've achieved critical mass is to wipe 25 years of internet history under the carpet.
Decentralization is good, not bad.
If installing and operating a compliant email server is too hard then we should make that easier, not push to get everybody to switch over to some corporation.
Re: Gmail Will Warn If Message Is Not Authenticated/Encrypted
#190I think as HNers, we're focusing too heavily on niche cases (like running your own email server). But, for general public who is still sharing their own (and more importantly, their clients') SSNs, passwords, and other very sensitive information on email, this may be the trigger that educates / trains them to be more careful. I am definitely looking at this as a positive.