<?xml version="1.0" encoding="utf-8"?><?xml-stylesheet title="XSL formatting" type="text/xsl" href="http://www.gandibar.net/feed/rss2/xslt" ?><rss version="2.0"
  xmlns:dc="http://purl.org/dc/elements/1.1/"
  xmlns:content="http://purl.org/rss/1.0/modules/content/"
  xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>Gandi Bar - Gandi Mail - Enhanced Security Measures  - Comments</title>
  <link>http://www.gandibar.net/</link>
  <atom:link href="http://www.gandibar.net/feed/rss2/comments/1542" rel="self" type="application/rss+xml"/>
  <description>Gandi blog, to share our opinions</description>
  <language>en</language>
  <pubDate>Wed, 08 Feb 2012 10:03:57 -0400</pubDate>
  <copyright></copyright>
  <docs>http://blogs.law.harvard.edu/tech/rss</docs>
  <generator>Dotclear</generator>
  
    
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Leland</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c173106</link>
    <guid isPermaLink="false">urn:md5:b39d11ae6ba5cd848fa0549748ca8c14</guid>
    <pubDate>Sat, 27 Mar 2010 22:46:33 +0100</pubDate>
    <dc:creator>Leland</dc:creator>
    
    <description>&lt;p&gt;@Ok&lt;/p&gt;


&lt;p&gt;All users of the Gandi Mail service are authenticated users with at least one domain registered with us.  The risk was the fact that once authenticated, the actual email could be sent &amp;quot;from&amp;quot; any other domain, whether with us or not.&lt;/p&gt;


&lt;p&gt;This has been somewhat mitigated now with the additional safeguards put in place which allow immediate action to be taken in case of verified abuse of the service.&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Ok</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c173105</link>
    <guid isPermaLink="false">urn:md5:ba8147154358c81c99fced0e898f7941</guid>
    <pubDate>Sat, 27 Mar 2010 16:49:34 +0100</pubDate>
    <dc:creator>Ok</dc:creator>
    
    <description>&lt;p&gt;I am not a gandi user. I have been following this post because I have been considering transferring a couple of my domain names to gandi.net in order to take advantage of the e-mail service you provide.&lt;/p&gt;


&lt;p&gt;Now I don't know whether this would be a wise move, as it seems, for reasons that I don't understand, that your policies are still too loose and might cause unnecessary problems to legitimate users.&lt;/p&gt;


&lt;p&gt;What reason is there not to restrict the use of SMTP only to domain names and users who are registered with you and whose identity can be authenticated?&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Leland</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c173091</link>
    <guid isPermaLink="false">urn:md5:b7dd35917f78b1a9e12832a7c3253e58</guid>
    <pubDate>Fri, 26 Mar 2010 23:38:29 +0100</pubDate>
    <dc:creator>Leland</dc:creator>
    
    <description>&lt;p&gt;Just to update everyone...&lt;br /&gt;
Whilst the precept remains that the Gandi Mail service is intended for domains registered at Gandi, we have nevertheless *removed* the SMTP restriction, whilst implementing a number of additional safeguards, though these should have no impact on the sending of emails.  We are, of course, tolerant of fair use of the system, but will take rapid action in case of abuse.&lt;/p&gt;


&lt;p&gt;We will shortly be communicating further with more details, but due to a few contractual amendments, we are not in a position to communicate on these specifics until our legal team has completed the validation process.&lt;/p&gt;


&lt;p&gt;We will keep you updated in due course.&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Leland Vandervort</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c173060</link>
    <guid isPermaLink="false">urn:md5:2a626359649a18de52a73dca0a1b86f9</guid>
    <pubDate>Wed, 24 Mar 2010 15:18:03 +0100</pubDate>
    <dc:creator>Leland Vandervort</dc:creator>
    
    <description>&lt;p&gt;@all:   Just a quick update to let you know that just because we haven't commented recently doesn't meant that we aren't listening &lt;img src=&quot;/themes/default/smilies/wink.png&quot; alt=&quot;;)&quot; class=&quot;smiley&quot; /&gt;&lt;/p&gt;


&lt;p&gt;Some of the comments on both the english and french versions of our blog have been valid and useful.  We are actively looking into the feasibility of reopening the SMTP as before, but obviously there would be certain precautions and limitations placed upon such a move.&lt;/p&gt;


&lt;p&gt;We will update you again when we have implemented the solution.&lt;/p&gt;


&lt;p&gt;Leland&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Joe (Gandi)</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c172925</link>
    <guid isPermaLink="false">urn:md5:ce0fd01379357686d3a850b2f33b39f1</guid>
    <pubDate>Tue, 16 Mar 2010 17:46:18 +0100</pubDate>
    <dc:creator>Joe (Gandi)</dc:creator>
    
    <description>&lt;p&gt;Hi guys,&lt;/p&gt;


&lt;p&gt;Thanks for your colorful comments &lt;img src=&quot;/themes/default/smilies/wink.png&quot; alt=&quot;;-)&quot; class=&quot;smiley&quot; /&gt;&lt;/p&gt;


&lt;p&gt;Brian is quite right, this is nothing to do with the SORBS issue, which all began because a domain registered through us was mentioned in a spam email. We did not send or relay any spam.&lt;/p&gt;


&lt;p&gt;And regarding the open SMTP protocol we offered, we said that this was the focus on increasing misuse, but not that this misuse was effective. To give you an example, we process around 50m emails per day through our system. But only about 6m actually end up being sent, as the remaining mails are matched against spam databases (Spamhaus and ApamAssassin) and blocked before being sent.&lt;/p&gt;


&lt;p&gt;So the misuse of our system has resulted in more work for us to continue to keep attempted spam out of circulation, not actually in us relaying spam. We tried to keep an open system that some customers appreciated, but the increasing misuse as forced us to stop this.&lt;/p&gt;


&lt;p&gt;I hope that makes it a bit clearer. We're not spammers and nor are we supporting spamming activity &lt;img src=&quot;/themes/default/smilies/wink.png&quot; alt=&quot;;-)&quot; class=&quot;smiley&quot; /&gt;&lt;/p&gt;


&lt;p&gt;Joe&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - nobody</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c172916</link>
    <guid isPermaLink="false">urn:md5:f13b9e5db98b320d7a78994b7d0567fe</guid>
    <pubDate>Tue, 16 Mar 2010 10:58:59 +0100</pubDate>
    <dc:creator>nobody</dc:creator>
    
    <description>&lt;p&gt;Spamdi.net!!&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - mike</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c172915</link>
    <guid isPermaLink="false">urn:md5:8adecb64fc22735fd2281ec11a00fc52</guid>
    <pubDate>Tue, 16 Mar 2010 07:28:41 +0100</pubDate>
    <dc:creator>mike</dc:creator>
    
    <description>&lt;p&gt;Come on, Gandi. Let's face it.  You got caught hosting and facilitating spammers and now you're holdung you customers hostage to cover up for your incompetence.&lt;/p&gt;


&lt;p&gt;You guys should find a new line of work because email service certainly isn't one of your strong points!&lt;/p&gt;


&lt;p&gt;Hope the rest of the clueful ISPs blacklist you just like AOL has!&lt;/p&gt;


&lt;p&gt;Gandi is friendly to spammers!&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Dave</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c172901</link>
    <guid isPermaLink="false">urn:md5:a2e1a338918b55296ad5876bd1ac8736</guid>
    <pubDate>Mon, 15 Mar 2010 06:24:29 +0100</pubDate>
    <dc:creator>Dave</dc:creator>
    
    <description>&lt;p&gt;what I don't understand is if you knew people were abusing the system all this time, why didn't you take action against the abusers instead of penalising everyone in one foul swoop?&lt;br /&gt;
Or does this mean that you didn't actually keep very accurate log files of mail activity and now it's catching up to you?&lt;/p&gt;


&lt;p&gt;Yes, it's a very good thing that you're doing this, but it should have been done from the outset because now you're faced with a situation where you alienate existing customers because of your own complacency -- ok -- maybe they shouldn't have taken advantage of the loophole in the first place, but nevertheless it comes as a foul blow to everyone now.&lt;/p&gt;


&lt;p&gt;Just my 2 pence&lt;/p&gt;


&lt;p&gt;Dave&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Brian</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c172889</link>
    <guid isPermaLink="false">urn:md5:d190dc2bb304004d4ad9aad805b0120e</guid>
    <pubDate>Sat, 13 Mar 2010 19:06:56 +0100</pubDate>
    <dc:creator>Brian</dc:creator>
    
    <description>&lt;p&gt;Well that was a very mature response Michael.&lt;/p&gt;


&lt;p&gt;Given Gandi's reputation, I think it is about bloody time that they put this into place because it was way too susceptible to abuse.  The SORBS problem is not really related, since that is basically Michelle (formerly known as Matthew) on a personal vendetta against a small handful of named individuals.  Unfortunately there are also a lot of so-called anti-spam activists who don't know how to read email headers either.&lt;/p&gt;


&lt;p&gt;Good job, Gandi, for locking this down.  A little late, but you've now caught up with the rest of the internet &amp;quot;best practice&amp;quot;.&lt;/p&gt;


&lt;p&gt;Brian J.&lt;/p&gt;</description>
  </item>
      
    
    <item>
    <title>Gandi Mail - Enhanced Security Measures - Michael Mulligan</title>
    <link>http://www.gandibar.net/post/2010/03/12/Gandi-Mail-Enhanced-Security-Measures#c172886</link>
    <guid isPermaLink="false">urn:md5:0b8e4012beafa272105003b8cabbaff8</guid>
    <pubDate>Sat, 13 Mar 2010 17:36:17 +0100</pubDate>
    <dc:creator>Michael Mulligan</dc:creator>
    
    <description>&lt;p&gt;Hah! looks like SORBS was right after all.  You guys do knowingly support spammers.  Nice to see you proactive anti-spammer policy... yea right.&lt;/p&gt;


&lt;p&gt;Wonder what other back doors you guys have for spammers to take advantage off... hey lets try your virtual server offer.  Another haven for Wayne Mansfield and his associates.&lt;/p&gt;</description>
  </item>
      
</channel>
</rss>
