Skip the navigation
)

Microsoft to unveil antispam plans at RSA show

Its Caller ID technology aims to make it harder to fake the source of spam

By Paul Roberts
February 24, 2004 12:00 PM ET

IDG News Service - Microsoft Corp. Chairman and Chief Software Architect Bill Gates will use this week's RSA Conference in San Francisco to unveil a proposed open technology standard that Microsoft hopes will make it harder to fake the source of unsolicited commercial e-mail.
The company today plans to release a specification for an antispam technology called Caller ID, a Microsoft-developed take on sender authentication technology that tries to validate the source address associated with an e-mail message, according to John Levine, co-chairman of the independent Antispam Research Group, part of the Internet Engineering Task Force.
A Microsoft spokesman couldn't confirm the information about Caller ID but said that Gates will be talking about spam in a "variety of different contexts" in his keynote speech at the RSA security show and that Microsoft's internal Anti-Spam Technology & Strategy Group will be making an announcement as well.
Sender authentication is rapidly gaining acceptance among e-mail experts and Internet service providers as a weapon in the fight against spam. Yesterday, Sendmail Inc. announced that it will develop and distribute sender authentication technologies to its customers and the open-source community to combat spam, viruses and identity fraud in e-mail.
Sendmail will incorporate a "selection of sender authentication technologies" into its open-source Mail Transfer Agent, including a technology called DomainKeys that is championed by Yahoo Inc. and "proposals put forward by Microsoft and others," Sendmail said. A Microsoft spokesman confirmed reports that the company will be releasing a sender authentication plug-in along with Sendmail.
Caller ID is akin to other sender authentication proposals circulating among leading Internet service providers and e-mail security experts, Levine said. In particular, it's similar to a nascent technology called Sender Policy Framework (SPF), developed by independent antispam researcher Meng Wong of e-mail forwarding service Pobox.com.
Instead of analyzing the content of messages to spot spam, the SPF protocol allows Internet domain administrators to describe their e-mail servers in an SPF record that is attached to the DNS (Domain Name System) record using a special SPF description language. Other Internet domains can then reject any messages that claim to come from that domain but weren't sent from an approved server, Wong said.
Caller ID also relies on administrators adding lists of published e-mail servers to the DNS record for their Internet domains. Whereas SPF uses its own syntax for listing the domain addresses, Microsoft's Caller ID uses XML to describe the valid e-mail servers, Levine said.
Also, SPF allows e-mail gateways to analyze the e-mail envelope, a wrapper for the message that is transferred between mail servers before the full message is sent. Messages that don't come from a valid server at the domain are dropped before any message content is sent. In contrast, Caller ID analyzes the sender IP address information stored in the e-mail message header, which requires the whole message to be downloaded by the receiving e-mail server before it can be accepted or rejected, he said.
Microsoft has been developing Caller ID internally for the past year and consulting with antispam researchers in private for the past month, Wong and Levine said.
The Caller ID technology has both strong points and weaknesses, according to experts.
On the one hand, it requires mail servers to download the entire content of bogus messages before rejecting them, which could put a drag on e-mail servers. And once it downloads a message, it only checks for the sender IP address, as opposed to running the message content through filters and other antispam tools, Levine said.
Caller ID also requires knowledge of XML, which makes implementation more complicated. And the added length of the XML content required by Caller ID may exceed the 512-character limit for response messages to DNS requests, Wong said.
According to the DNS specification, messages that exceed that limit require DNS information to be sent through a separate TCP (Transmission Control Protocol) circuit, instead of using UDP (User Datagram Protocol). While that is technically possible, it is rarely used, introducing an element of uncertainty into the implementation of Caller ID, Wong and Levine said.
"This is a feature that has been specified for 25 years but never used," Levine said.
However, the technology could do a better job of determining the actual source of an e-mail message than SPF, especially since envelope e-mail addresses don't have to correspond to e-mail header addresses, he said.
Microsoft's dominance of the e-mail client market may allow it to extend sender authentication technology to smaller Internet domains and the masses of Internet users, Wong said.
Levine also supports the release of the Caller ID specification and Microsoft's decision to develop Caller ID as an open standard. "This is an important step. It's the way you get standards to work. You have people pick at them but implement them," he said.
Caller ID could eventually work alongside SPF, domain keys and other sender authentication technologies, Levine said. "Solving the spam problem is like curing cancer. It's not one disease but 100 diseases, each with their own issues," he said.




Reprinted with permission from IDG.net. Story copyright 2012 International Data Group. All rights reserved.
What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?
Additional Resources
Security KnowledgeVault
WHITE PAPER
Security is not an option. This KnowledgeVault Series offers professional advice how to be proactive in the fight against cybercrimes and multi-layered security threats; how to adopt a holistic approach to protecting and managing data; and how to hire a qualified security assessor. Make security your Number 1 priority.

Read now.

Cut Communications Costs Once and for All
WHITE PAPER
New IP-based communications systems are being deployed by small and midsized businesses at a rapid rate. Learn how these organizations are enabling faster responsiveness, creating better customer experiences, speeding office or mobile interactions, and dramatically reducing existing communications costs.

Read now.

Desktop Apps White Papers
Practice Management: Double Billing Rate and Improve Patient Services
Would you like to double your billing rate and achieve faster payment for services?

Download this customer success story to see how One Health...
Mission Critical Data Explosion and Customer Case Study
Would you like to double your tier 1 storage capacity while simultaneously reducing your storage footprint?

Download this customer success story to see how...
Protecting Against Database Attacks and Insider Threats: Top 5 Scenarios
Read this new eBook to learn the top five scenarios and essential best practices for preventing database attacks and insider threats.
Database Activity Monitoring Is Evolving
Read the analyst report and learn how you can leverage the core capabilities of a DAP solution for better database security.
Establishing a Strategy for Database Security is No Longer Optional
The options for securing increasingly valuable databases are very broad and deep, and can be confusing. This research provides an overview of three...
All Desktop Apps White Papers
Desktop Apps Webcasts
Distributed Database Security with Real-time Monitoring
View this demo and learn how IBM InfoSphere Guardium database activity monitoring can help protect your sensitive data in distributed DBMS environments with...
InfoSphere Warehouse Packs Demo
These flash modules make warehousing more tangible and relevant to business users through detailed explanations of the InfoSphere Warehouse Packs.
Delivery Management -- Extending Lifecycle Management
Date: Wednesday, June 20, 2012, 1:00 PM EDT

Siloed organizations continue doing the wrong things and doing things wrong, leading to increased costs,...
Leverage automation today to reduce IT complexity
Date: Tuesday, June 5, 2012, 2:00 PM EDT

Whether your B2B complexity is caused by multiple technologies due to M&A, business or application specific...
Redefine Expectations in the Data Center
Need to do more with less? Watch this video to learn how HP ProLiant Gen8 servers can help your business deploy servers three...
All Desktop Apps Webcasts
Newsletter Sign-Up

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all newsletters | Privacy Policy
IT Jobs