1993-02-23 - No subject

Header Data

From: an5877@anon.penet.fi (deadbeat)
To: cypherpunks@toad.com
Message Hash: 499ce45818d8a3ca6c61413ad231b078cdb9c1b92f9744050792eddf4628aa27
Message ID: <9302231704.AA10557@anon.penet.fi>
Reply To: N/A
UTC Datetime: 1993-02-23 18:20:48 UTC
Raw Date: Tue, 23 Feb 93 10:20:48 PST

Raw message

From: an5877@anon.penet.fi (deadbeat)
Date: Tue, 23 Feb 93 10:20:48 PST
To: cypherpunks@toad.com
Subject: No subject
Message-ID: <9302231704.AA10557@anon.penet.fi>
MIME-Version: 1.0
Content-Type: text/plain

In-reply-to: Johan Helsingius' message of Tue, 23 Feb 1993 10:14:27 +0200.


> Well, then, how *should* anon.penet.fi operate? I really am open to
> suggestions...

I'll restrict my comments to anonymous email, but the application to
anonymous USENET posting is analogous.

I'll ignore messages of the sort

	From: Alice
	To: anon@anon.penet.fi
	X-Anon-To: Bob
	X-Anon-Password: zzz

since it's clear that Alice's identity should be concealed in this
case.  The problem we're dealing with is the message of the sort

	From: Alice
	To: Bob <anxxxx@anon.penet.fi>

Should the remailer expose Alice's identity in the message that it
forwards to Bob?  If it does so blindly, Alice's anonymous identity is
subject to accidental exposure.  If it does not conceal Alice's
identity, then certain expectations of anonymity might not be realized
(according to Johan).

Here's a way out that will satisfy me and Johan: assign Alice a new
pseudonym here and now, one that will be good for replies only.  If
Alice has registered with the remailer in the past, i.e., if she has a
password, then she knows how to X-Anon-To:, but has opted not to.  If
she has not registered, then it is also appropriate to assign her a new
ID.  However, should she later register, I suggest she be given a new,
permanent, password-protected ID, just in case her earlier reply
inadvertently exposed her real ID (in the way we have been discussing).

In essence, I'm suggesting that the Finnish remailer have two classes
of anonymous IDs, one that is password protected, and one that is not.
The former should never be used without the X-Anon-Password header.


P.S.: Another suggestion I would make is that the remailer _not_ strip
In-Reply-To: headers.

Version: 2.1

To find out more about the anon service, send mail to help@anon.penet.fi.
Due to the double-blind system, any replies to this message will be anonymized,
and an anonymous id will be allocated automatically. You have been warned.
Please report any problems, inappropriate use etc. to admin@anon.penet.fi.
*IMPORTANT server security update*, mail to update@anon.penet.fi for details.