Re: [Bimi] Bimi Goals (was: Re: Thoughts about MUA/BIMI)

"Brotman, Alex" <Alex_Brotman@comcast.com> Fri, 12 August 2022 16:37 UTC

Return-Path: <Alex_Brotman@comcast.com>
X-Original-To: bimi@ietfa.amsl.com
Delivered-To: bimi@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 315FDC15A722 for <bimi@ietfa.amsl.com>; Fri, 12 Aug 2022 09:37:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=comcast.com header.b=N0pEmaFq; dkim=pass (1024-bit key) header.d=comcastcorp.onmicrosoft.com header.b=bjYxEY1A
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Za4vdv9aCqCW for <bimi@ietfa.amsl.com>; Fri, 12 Aug 2022 09:37:23 -0700 (PDT)
Received: from mx0b-00143702.pphosted.com (mx0b-00143702.pphosted.com [148.163.141.77]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CCBB8C14CF0C for <bimi@ietf.org>; Fri, 12 Aug 2022 09:37:23 -0700 (PDT)
Received: from pps.filterd (m0156895.ppops.net [127.0.0.1]) by mx0b-00143702.pphosted.com (8.17.1.5/8.17.1.5) with ESMTP id 27CGWOX6017815 for <bimi@ietf.org>; Fri, 12 Aug 2022 12:37:23 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcast.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=20190412; bh=yIx7RhKgUo9Mk3NlrZLey/0nv8GLIdZM4+CB7fb/2xk=; b=N0pEmaFqFF+Vn5WuCkwAtjFf8XtJ0QcEYdRwhPL3qCmksG4eH1orJc4hT9Scx1xEmRWC jC+HjH65yBh3OqpVeCc3XmL+YIxmaXPpuNsshYOby+0m2SJRpPBC2pOV957aGHfmrlZL dfuMpvmOFip17AMygawUPCQ1noRRpBNPkcmlot+wfh+1R1wmlKoBeOLOQaYY3q9pZel2 RvLwdJkawhS4HDkpG/cDXldcXyGAMRUnhtgLuJPPxdEnuRSiajActrU2OIh8XilUUPet NDLlT6wqqQ1uPjd6P21tQd6iYjtMgdTxv4D/Zie74jbh41/aDXD+8npNRccFh1qscBxr 7w==
Received: from nam04-bn8-obe.outbound.protection.outlook.com (mail-bn8nam04lp2040.outbound.protection.outlook.com [104.47.74.40]) by mx0b-00143702.pphosted.com (PPS) with ESMTPS id 3hw5u7fyu8-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <bimi@ietf.org>; Fri, 12 Aug 2022 12:37:22 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Y8Vajl+g/BRB6dOgGo24nNPT4wksAkGueQb87+xYSGXXgUSoUAE031pVD3PxbIJnZ6G2bnknXXBmKEqos4SyVQgTq/zZoVm46knNtOAf3nTbltz0+sHopKzo8MUKeahEeFazTIA3ZBAztMTcmCBQo9NB4bqv28W9sJcqBfOFCqZtZ+LFjQMc6FKfrUZF37JB0755q7TIaxTF3jGoui70BssEobAvL5eli/zEaN3LmxILDUUL50l1P9Me0kQereY9Qc+mn04/5qQde/imLIwC6efCzjkxFDXvQSZ/8xLzs4SztGNcY38hvQ8HsNyklnCyCKqCe5QIl73qYHwKLwVvQA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=yIx7RhKgUo9Mk3NlrZLey/0nv8GLIdZM4+CB7fb/2xk=; b=ZSWv+8LODojTgoVC+jw7kg85/oGjLnQt/lKoWxQoMOgi8Q8YiwtqoJ75eJ7IsXg3bMUElZCvLTf1eMw9qDEQmu6tqIms6jdaVzDpz3r1NvdB+x9y02i0fI4UViqRYS7t/vw7BQ0faspfAEMAofZ/MPO0TweoqWVScMm7r2g5w1B1I5auQo0Ll61BeDjJi2jZSXt19LLxAYcBl6gKm5sG9cSDXcBD8mU2XJCSkXwdldG8aoE+ck0c1MN7DIwkxxA3ubm/9z8WOQmG6oNT3mM3jsym48PdH+dCeUNtsrggRiKzJlgR9WnVGYu9uGnewU0d7ymW1dWQwM81NsdX8nQfOg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=comcast.com; dmarc=pass action=none header.from=comcast.com; dkim=pass header.d=comcast.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcastcorp.onmicrosoft.com; s=selector1-comcastcorp-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=yIx7RhKgUo9Mk3NlrZLey/0nv8GLIdZM4+CB7fb/2xk=; b=bjYxEY1Ay+S0m8lIqx9fA48iecI2qt1bTR2UfOpcwHsDatl8ZuPeU/hQ/znvVVdwvlo7D/apgGWkV+7u8CIl/fQCD89lpNZisvUQoF9fMURz8Zh8X+SkU9Zi+5ldhZeV2ghYvwnboPfHgplFUMppgBXWKAKNxssqJQGOv28kP+8=
Received: from MN2PR11MB4351.namprd11.prod.outlook.com (2603:10b6:208:193::31) by CH0PR11MB5345.namprd11.prod.outlook.com (2603:10b6:610:b8::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5525.11; Fri, 12 Aug 2022 16:37:19 +0000
Received: from MN2PR11MB4351.namprd11.prod.outlook.com ([fe80::948b:4532:30e:30b2]) by MN2PR11MB4351.namprd11.prod.outlook.com ([fe80::948b:4532:30e:30b2%6]) with mapi id 15.20.5504.020; Fri, 12 Aug 2022 16:37:19 +0000
From: "Brotman, Alex" <Alex_Brotman@comcast.com>
To: "BIMI (IETF) (bimi@ietf.org)" <bimi@ietf.org>
Thread-Topic: Bimi Goals (was: Re: [Bimi] Thoughts about MUA/BIMI)
Thread-Index: AQHYrl9cfjJTfQEA1EaKtJTMe/n54a2ramFA
Date: Fri, 12 Aug 2022 16:37:18 +0000
Message-ID: <MN2PR11MB4351D981953EFD96C3E4A301F7679@MN2PR11MB4351.namprd11.prod.outlook.com>
References: <MN2PR11MB435138DB4A7161A506B8CD25F7649@MN2PR11MB4351.namprd11.prod.outlook.com> <ea58765e-c46a-8f29-8af6-3373db343c27@dcrocker.net>
In-Reply-To: <ea58765e-c46a-8f29-8af6-3373db343c27@dcrocker.net>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5b396218-dcb3-420f-6618-08da7c80ec6f
x-ms-traffictypediagnostic: CH0PR11MB5345:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR11MB4351.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(366004)(136003)(346002)(396003)(376002)(39860400002)(6916009)(71200400001)(41300700001)(478600001)(316002)(55016003)(2906002)(66446008)(66556008)(64756008)(8676002)(38100700002)(66946007)(76116006)(66476007)(52536014)(5660300002)(8936002)(38070700005)(122000001)(33656002)(86362001)(53546011)(82960400001)(6506007)(186003)(7696005)(9686003)(83380400001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_MN2PR11MB4351D981953EFD96C3E4A301F7679MN2PR11MB4351namp_"
MIME-Version: 1.0
X-OriginatorOrg: comcast.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR11MB4351.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5b396218-dcb3-420f-6618-08da7c80ec6f
X-MS-Exchange-CrossTenant-originalarrivaltime: 12 Aug 2022 16:37:19.0259 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 906aefe9-76a7-4f65-b82d-5ec20775d5aa
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: hkpK7xVrN6ELFXnvCpkwB3h9IUqBLxlk1961iBGl9RFwFFd9ylH6agiECTSVKs6FLsavRaA4ns3r4EHQo/JFzNhCjQ3RQgdBUgW4GJlKdus=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CH0PR11MB5345
X-Proofpoint-ORIG-GUID: NvpoT3gRCth9mHZIMKJ6aaz74qmGX622
X-Proofpoint-GUID: NvpoT3gRCth9mHZIMKJ6aaz74qmGX622
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.883,Hydra:6.0.517,FMLib:17.11.122.1 definitions=2022-08-12_10,2022-08-11_01,2022-06-22_01
X-Proofpoint-Spam-Reason: safe
Archived-At: <https://mailarchive.ietf.org/arch/msg/bimi/I5K0lQX-zcLI5MAgceZI8EWFXWc>
Subject: Re: [Bimi] Bimi Goals (was: Re: Thoughts about MUA/BIMI)
X-BeenThere: bimi@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Brand Indicators for Message Identification <bimi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bimi>, <mailto:bimi-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bimi/>
List-Post: <mailto:bimi@ietf.org>
List-Help: <mailto:bimi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bimi>, <mailto:bimi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 12 Aug 2022 16:37:28 -0000

BIMI, as currently designed, does not function without DMARC.  When a domain adopts BIMI (and by requirements, publishes a DMARC of q/r for the OrgDom), every MBP who utilizes DMARC on inbound messaging receives the benefit of that domain having moved to an enforcing policy.  That happens regardless of whether that MBP utilizes BIMI for their users.  To me, that seems fairly important.  The order as stated below is irrelevant (and they weren’t meant to be ordered by importance).

--
Alex Brotman
Sr. Engineer, Anti-Abuse & Messaging Policy
Comcast

From: Dave Crocker <dhc@dcrocker.net>
Sent: Friday, August 12, 2022 11:22 AM
To: Brotman, Alex <Alex_Brotman@comcast.com>; BIMI (IETF) (bimi@ietf.org) <bimi@ietf.org>
Subject: Bimi Goals (was: Re: [Bimi] Thoughts about MUA/BIMI)

On 8/11/2022 7:21 AM, Brotman, Alex wrote:

Consider we have two primary goals (in short form):

  1.  Drive DMARC adoption
  2.  Associate an image with properly authenticated messages

Alex,

Looking at the Bimi technical details, one sees a mechanism to permit a standardized way of conveying a marketing image from its owner to a recipient, in aid of privileged display.  It is, therefore, simply a mechanism to increase marketing 'impressions'.

That some folk working on Bimi have a hope that its use will produce better adoption of some existing email authentication mechanisms is nice -- albeit, a fragile hope, in the absence of a demonstrated history of such an effort succeeding -- but it is outside of the technical and operational basics of Bimi. Adoption and use of Bimi can be significantly successful, in terms of facilitating marketing impressions, while having no meaningful effect on the global use of email authentication.

At the very least, that means the ranking order you have given is wrong.

But there also seems to be some indication that the fragile goal is being used to justify sub-optimal engineering design and to justify rejecting better design.

d/

--

Dave Crocker

Brandenburg InternetWorking

bbiw.net