-----BEGIN PGP SIGNED MESSAGE----- >>>>> "Francis" == Francis Dupont <Francis.Dupont@enst-bretagne.fr> writes: mcr> The "nicest" solution that I can see is for the ISPs to mcr> transparently proxy port 25 to their MTA. They should offer mcr> STARTTLS. Francis> => I don't understand the word "transparently" here (:-). If one Francis> of my ISPs does such things, I'll sue it immediately: we have Francis> laws in France to protect the secrecy of private mails. I'll be Francis> surprised if there is none in USA. "transparently" means that it splices itself into the TCP connection, creating a new connection to your intended destination. cf: transparent HTTP proxies, and alg firewalls such as Janus (Borderware), Blackhole (SecureIt), and Eagle (Axent). I'm not in the USA, so I can't speak about it. I think that legislating that email is private doesn't help make it so. Deploying PGP or S/MIME widely, and educating people about its use would be more effective. ] ON HUMILITY: to err is human. To moo, bovine. | firewalls [ ] Michael Richardson, Sandelman Software Works, Ottawa, ON |net architect[ ] mcr@sandelman.ottawa.on.ca http://www.sandelman.ottawa.on.ca/ |device driver[ ] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [ -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) Comment: Finger me for keys iQCVAwUBPmNZDIqHRg3pndX9AQGAQwQAhfq6/7cBjXA5Q7Vgd1LGqADBHHMsGPWL XjSTzJdNuwKiSCja/F89dnIaSD6QtCe1gjH68LyTz51VQT105+mH0gHnY27kooHS 10jIS6FuVbczypI4pgMgw9xT7tTaNHV7mHhDnQYz3D3bKToOhNMP3RXEP6H8a/ia 1L5Vy43EBcI= =h/eG -----END PGP SIGNATURE-----