메뉴
HN
Hacker News • 40일 전

Gmail이 다른 동명인의 메일을 받는 원인일 수 있다

IMP
4/10
핵심 요약

Sean Conner라는 블로거가 동명이인의 이메일을 계속 받는 문제를 다룬 글로, Gmail이 사용자명에서 점(.)을 무시하는 정책 변경 때문에 기존 계정에 메일이 '새는' 현상이 발생할 수 있다는 지적이다. RFC-5321을 근거로 한 Google의 주장과 달리 실제 사용자들은 계정 간 메일 혼선을 경험했으며, 이 때문에 중요한 메일은 Gmail에서 사용하지 않게 되었다.

번역된 본문

보스턴 다이어리(The Boston Diaries) — 보스턴에 살지도 않고 보스턴을 좋아하지도 않으면서 자신의 블로그/저널을 'The Boston Diaries'라고 명명한 Sean Conner의 진행 중인 이야기다. 웃기지 않은가.

2026년 8월 11일 화요일

Gmail이 다른 Sean Conner들의 이메일을 받는 문제의 부분적 원인일 수 있다

"한 연구자가 noreply.net을 구입했다. 기업들이 그에게 비밀 정보를 보내기 시작했다"라는 기사에 대한 Lobsters 스레드를 읽다가, 나 자신도 다른 Sean Conner들의 이메일을 받는 문제로 고생한 경험에 대해 댓글을 달았다. 그 댓글이 비슷한 경험을 가진 다른 사람들의 댓글로 넘쳐나는 스레드를 만들어냈고, 내가 혼자가 아니라는 걸 알게 되니 다행이었다. 또한 그 스레드에서 내가 가장 좋아하는 댓글 하나를 소개한다(이유는 명백할 것이다):

"'그 주제로 블로그 시리즈를 통째로 쓴 사람을 알고 있는데'라고 말하려던 참이었습니다. 그런데 확인해 보니 그 사람이 당신이더군요." — Jason McBrayer의 Lobsters 댓글

허허. 하지만 그 스레드 전체를 읽고 나니, 여전히 이메일을 거의 이해하지 못하고 자신의 이메일 주소가 정확히 뭔지조차 확신하지 못하는 사람이 많다는 생각이 들었다. 안타까운 일이다.

내 댓글에 대해 Keong Lim이라는 사람에게 이메일을 받았는데, 이 혼란은 대부분 Google의 잘못이라며 Stack Exchange의 꽤나 일격을 가하는 답변을 링크해 주었다:

"너무나 많은 전문가들이 Google의 정형화된 답변을 마치 주장이 경험적 사실과 동일한 것처럼 그대로 되뇌고 있다는 점은 인간 본성에 대한 교훈이다. 나는 firstname.lastname@gmail.com 계정의 초기 보유자 중 한 명이다. 약 3년 전부터 firstnamelastname@gmail.com으로 향하는 이메일을 받기 시작했다. 그들의 세탁소, 자동차 딜러 등에서 수집한 정보를 종합해 마침내 그 사람들에게 연락할 수 있었다(참고로 나와 약 4,800km 떨어져 있었다). 그들은 실제로 나와 같은 계정을 사용하고 있었고, 점만 빠진 형태였다. 우리는 이메일의 일부만 계정 간에 '새고' 있음을 확인할 수 있었다. 안타깝게도 내가 그들보다 10년 먼저 계정을 만들었다는 사실은 그들이 계정을 나에게 양보하도록 설득하지 못했다. 그래서 나는 은행, 학교 등에서 오는 가끔의 알림과 함께 살아간다. 이 때문에 나는 더 이상 중요하거나 기밀한 일에 Gmail을 사용하지 않는다. 나에게 가장 불안한 점은, 명백히 실수를 했으면서도 Google이 프로그래밍 실수를 했을 리 없다고 주장하는 태도다. 이들은 가짜 겸손 속에 오만하다."

Gmail 주소의 사용자명에서 점을 왜 구분하지 않는가? Google의 '정형화된 답변'은 firstname.lastname@gmail.com과 firstnamelastname@gmail.com 중 누가 메일을 받을지에 대한 혼란을 줄이기 위해서라는 것이지만, 이 '정형화된 답변'은 사실 이메일 주소의 로컬 부분('@' 앞부분)에서 점을 무시하도록 Gmail이 나중에 변경한 것으로 보인다.

Gmail이 이를 정당화하는 근거로 "RFC-5321: Simple Mail Transfer Protocol"의 다음 부분에 크게 의존하는 것 같다:

2.3.11. 메일박스와 주소 이 명세에서 사용되는 대로, '주소(address)'는 메일이 보내질 사용자 또는 메일이 보관될 위치를 식별하는 문자열이다. … 따라서, 그리고 중간 호스트들이 주소를 수정해 전송을 최적화하려다 문제를 일으킨 오랜 역사 때문에, 로컬 부분은 반드시(MUST) 주소의 도메인 부분에 명시된 호스트에 의해서만 해석되고 의미가 부여되어야 한다. (강조 추가)

나는 Gmail 초창기에 sean.conner@gmail.com을 가입할 만큼 일찍 가입했고, 당시에는 seanconner@gmail.com이 다른 이메일 주소로 간주되었을 것이다. 변경 이후, Gmail이 가끔 혼란을 일으켜 일부 레거시 주소를 잘못 처리하는 것으로 보인다.

이 모든 것을 읽으면서, 이메일 주소에 실제로 어떤 문자가 허용되는지에 대한 작은 토끼굴에 빠져들기도 했다. ASCII 외의 문자가 허용되는지는 불분명하지만, ASCII 중 허용되지 않는 것은 놀랍게도 매우 적다. 정의된 95개의 그래픽 문자(공백 문자 포함) 중 허용되지 않는 것은 다음과 같다:

이메일 주소에 허용되지 않는 ASCII 문자:

  • Space (공백)
  • " (큰따옴표)
  • ( (왼쪽 괄호)
원문 보기
원문 보기 (영어)
The Boston Diaries The ongoing saga of Sean Conner, who doesn't live in Boston, nor does he even like Boston, but yet named his weblog/journal "The Boston Diaries." Go figure. Tuesday, August 11, 2026 Gmail might partially be to blame for me receiving emails from other Sean Conners I was reading the Lobsters thread about the article “ A researcher bought noreply.net. Companies started sending him secrets ” when I left a comment about my own struggles with receiving emails for other Sean Conners . That started a thread that swamped the comment section about other people who had similar stories, so it's nice to know that I'm not alone. Also, here's one of my favorite comments in that thread (for reasons that should be apparent): I was about to say, "I know a guy with a whole blog series about that." But then I looked, and you were him. Lobsters comment from Jason McBrayer Heh. But the thread as a whole left me with the idea that there's still a lot of people out there that barely understand email and aren't even sure what their own email even is. Sad. I did get an email about my comment from Keong Lim, claiming it was mostly Google's fault for the confusion and linked to this fairly damning answer at Stack Exchange: It is a lesson in human nature that so many experts simply recite Google's pat answer on this as if an assertion were identical to empirical reality. I am one of the early account holders with the firstname.lastname@gmail.com accounts. About three years ago, I began receiving email directed to firstnamelastname@gmail.com . By triangulating the information I was able to glean from their dry cleaners, car dealer, etc. I was finally able to contact these people (about 3,000 miles from me, BTW). The DO have the same account as me, minus the period. We were able to determine that only a portion of email "leaks" across accounts. Unfortunately, the fact that I had my account 10 years before they had theirs did not convince them to leave the account to me. Thus, I live with the occasional notice from the bank, school, etc. Because of this, I no longer use Gmail for anything important or confidential. The most disturbing thing to me is Google's insistence that they could not have made a programming mistake when they clearly did. These folks are arrogant in their faux humility. Why does Google not consider dot in usernames of Gmail addresses? The “pat answer” is that Google is that it's cutting down on possible confusion over who receives firstname.lastname @gmail.com and firstnamelastname @gmail.com , but it seems that the “pat answer” is a somewhat later change to Gmail to ignore periods in the local part (the part before the “@”) of the email address. I think Gmail is leaning heavily upon this portion of “ RFC-5321: Simple Mail Transfer Protocol ” to justify this: 2.3.11. Mailbox and Address As used in this specification, an "address" is a character string that identifies a user to whom mail will be sent or a location into which mail will be deposited. … Consequently, and due to a long history of problems when intermediate hosts have attempted to optimize transport by modifying them, the local-part MUST be interpreted and assigned semantics only by the host specified in the domain part of the address . (emphasis added) I know I signed up early enough to Gmail to get sean.conner@gmail.com and at that time, seanconner@gmail.com might have been considered a different email address. After the change, it appears that Gmail might get confused sometimes and mess up some legacy addresses at times. While reading all that, I did go down a small rabbit hole with what characters are actually allowed in an email address. It's unclear if anything but ASCII is allowed, but there are surprisingly little in ASCII that isn't allowed. Out of the 95 defined graphic characacters (which I'm including the space character), the following are not allowed: ASCII characters not allowed in an email address character name Space " Quotation Mark ( Left Parenthesis ) Right Parenthesis , Comma : Colon ; Semicolon < Less-than Sign > Greater-than sign @ Commercial At [ Left Square Bracket \ Reversed Solidus ] Right Square Bracket Technically, they could be used in an email address if they're escaped, but it's discouraged heavily. Current Next Previous First Last Top Home About Archive Search Glossary Copyright Help Accessibility Obligatory Picture Obligatory Contact Info Comments? sean@conman.org Obligatory Feeds RSS Feed Atom Feed JSON Feed Obligatory Links Flutterby! KIRK.is Obligatory Miscellaneous About the Source Code Source Code Obligatory AI Disclaimer No AI was used in the making of this site, unless otherwise noted. You have my permission to link freely to any entry here. Go ahead, I won't bite. I promise. The dates are the permanent links to that day's entries (or entry, if there is only one entry). The titles are the permanent links to that entry only. The format for the links are simple: Start with the base link for this site: https://boston.conman.org/ , then add the date you are interested in, say 2000/08/01 , so that would make the final URL : https://boston.conman.org/2000/08/01 You can also specify the entire month by leaving off the day portion. You can even select an arbitrary portion of time. You may also note subtle shading of the links and that's intentional: the "closer" the link is (relative to the page) the "brighter" it appears. It's an experiment in using color shading to denote the distance a link is from here. If you don't notice it, don't worry; it's not all that important. It is assumed that every brand name, slogan, corporate name, symbol, design element, et cetera mentioned in these pages is a protected and/or trademarked entity, the sole property of its owner(s), and acknowledgement of this status is implied. Copyright &copy; 1999-2026 by Sean Conner. All Rights Reserved.
관련 소식