Re: [Bimi] Bimi logo hosting

"Brotman, Alex" <Alex_Brotman@comcast.com> Mon, 25 September 2023 18:53 UTC

Return-Path: <Alex_Brotman@comcast.com>
X-Original-To: bimi@ietfa.amsl.com
Delivered-To: bimi@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 33C9EC169530; Mon, 25 Sep 2023 11:53:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.104
X-Spam-Level:
X-Spam-Status: No, score=-7.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=comcast.com header.b="vd26nyY5"; dkim=pass (1024-bit key) header.d=comcastcorp.onmicrosoft.com header.b="W7cgqhKA"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qbxc6B-xVfws; Mon, 25 Sep 2023 11:53:00 -0700 (PDT)
Received: from mx0b-00143702.pphosted.com (mx0b-00143702.pphosted.com [148.163.141.77]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8475BC169533; Mon, 25 Sep 2023 11:52:57 -0700 (PDT)
Received: from pps.filterd (m0156894.ppops.net [127.0.0.1]) by mx0b-00143702.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 38PIqr9l029917; Mon, 25 Sep 2023 14:52:56 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcast.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=20190412; bh=ccfv86prRbrl+6bDpDK+X7G26Z50eEQtTOBt8COS0XY=; b=vd26nyY5Qn0yX57nC/Rp5XYP2VOJv/fFBkSw5twX7QMjIOHV/FKlYd3f6SCVgZHkJb74 wHBAhs3835d9/zrpYWRS797bB913bKCgJjNWUFoSudwewgAC6kYiSFCy7QBYrPStdxmH Wg7XfamgkKq1YW7cFMJ5YYXnp704MzUWm8QlJurspFfVf+Zboc7IFu/6RQAS4BElKebp 63J8mALzxrXwO+2U/Ejkb2z4CrvULBeIOsUgQtGiXFNsCw6/3YrdwRXjvfMp81hWfrfo eQczsI+7m3kJAXiTcQBaRuM8tSzuYN1vduqPCTOHky+3zffr/Un/wmMwRBubPdG8fpBJ GA==
Received: from nam10-bn7-obe.outbound.protection.outlook.com (mail-bn7nam10lp2105.outbound.protection.outlook.com [104.47.70.105]) by mx0b-00143702.pphosted.com (PPS) with ESMTPS id 3t9vvtvpc9-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 25 Sep 2023 14:52:56 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=KQ8CMqzMlVZW6S+VlSTIkAdY0GfFtqJNG6dF4jvvU1d+masHQbG+z1vnY/kP+NX/vK4Nmx+6LA+70x7b0Puzp/S9YxcOE2gv+8h6hmNH+mR9vYR8aYC66ptdDvVEUopm5l8q7ry2YBKE6F6aVduO3ZvyhGtDKd6pXJBGbdMFSqcyz2tjg8FG3heXRweeVsQBM+4iIEvghS8ijAx5sX7OsWYAvCXoDv1vQS+7X42Xwi6VIzZ6ihTLDhxFn7oJyPImZXVWd9BGxCn/aXwr8LeVdeOMkSFDk3R/v7HzPb74TKX8lZEkyzMpXYoWqpY7tqjqdSOuYqkJ6MaAjtYJeNMgKQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=ccfv86prRbrl+6bDpDK+X7G26Z50eEQtTOBt8COS0XY=; b=K3M3Gc4Mgi1aOsPJS6jilPbFFBeY7yGOiPX7opYAWu1p4Ze8cFb8+mfoOO3Oeu3R4wc54ne3vas1sDzZZNge9+SXuHBgPlECyXIW3Dl/TCWpMv7/QTB5QIisydQXKMZa8fZ70ACvPpWoDwgHsrLggALRoZfmm9o5dXWpnxSjNhhrFsVuPx1boSPs9sKzykaw1dVC4Q+D0fGIRd3DjAUsUlLdw+UDBUrQbuNHge28OiqlMTXP1B2HWkmgSsisXk3H5lqaTd95rd20PhK54iCKgMYhdEfihPQ7lLnRCT+7rQOfN9T5XXYIoH3J+UX4h8NRCFYV+BU+LqVPEkxPT/EJNg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=comcast.com; dmarc=pass action=none header.from=comcast.com; dkim=pass header.d=comcast.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcastcorp.onmicrosoft.com; s=selector1-comcastcorp-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ccfv86prRbrl+6bDpDK+X7G26Z50eEQtTOBt8COS0XY=; b=W7cgqhKAVFiuzDoiHJTaYeDhA0sbyf5+2L+XCIscbJV+FztWRFDNomyzRXKUdDIJrDBz/7x15PyYFMKoetB2sXUsU0kwh5AKNqvzQ1rCYLtBR5yelU/j3F6tUmip6NyC6LzAwpaW36kKVV2ymxFb8goi+GWz/se0hlecO5YX+wA=
Received: from MN2PR11MB4351.namprd11.prod.outlook.com (2603:10b6:208:193::31) by BL1PR11MB5287.namprd11.prod.outlook.com (2603:10b6:208:31b::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6813.23; Mon, 25 Sep 2023 18:52:52 +0000
Received: from MN2PR11MB4351.namprd11.prod.outlook.com ([fe80::e9a6:c99f:d721:fe42]) by MN2PR11MB4351.namprd11.prod.outlook.com ([fe80::e9a6:c99f:d721:fe42%4]) with mapi id 15.20.6813.027; Mon, 25 Sep 2023 18:52:52 +0000
From: "Brotman, Alex" <Alex_Brotman@comcast.com>
To: Ivan Hadzhiev <iovo=40iovo.me@dmarc.ietf.org>, "bimi@ietf.org" <bimi@ietf.org>
Thread-Topic: [Bimi] Bimi logo hosting
Thread-Index: AQHZ77q/fHohVM586UGGcPWIHNeZYLAr4vpA
Date: Mon, 25 Sep 2023 18:52:52 +0000
Message-ID: <MN2PR11MB43516B9DFDAE5B4CF1798D14F7FCA@MN2PR11MB4351.namprd11.prod.outlook.com>
References: <f2cf5e6c-d177-8eac-bfea-54fd15703b6a@iovo.me>
In-Reply-To: <f2cf5e6c-d177-8eac-bfea-54fd15703b6a@iovo.me>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_ActionId=d311fc6b-5a54-49fa-9982-ce7a2811afe7; MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_ContentBits=0; MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_Enabled=true; MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_Method=Standard; MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_Name=Confidential (C); MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_SetDate=2023-09-25T18:50:57Z; MSIP_Label_15652fe2-2b59-4d95-925c-ee86d789ff67_SiteId=906aefe9-76a7-4f65-b82d-5ec20775d5aa;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN2PR11MB4351:EE_|BL1PR11MB5287:EE_
x-ms-office365-filtering-correlation-id: 14aa6abc-aac5-4d90-9044-08dbbdf89f19
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR11MB4351.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(376002)(346002)(396003)(136003)(366004)(39860400002)(230922051799003)(451199024)(1800799009)(186009)(9686003)(316002)(8936002)(52536014)(41300700001)(66476007)(5660300002)(55016003)(2906002)(8676002)(7696005)(6506007)(66946007)(110136005)(478600001)(71200400001)(76116006)(38070700005)(53546011)(66446008)(38100700002)(83380400001)(64756008)(33656002)(82960400001)(122000001)(86362001)(66556008); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_MN2PR11MB43516B9DFDAE5B4CF1798D14F7FCAMN2PR11MB4351namp_"
MIME-Version: 1.0
X-OriginatorOrg: comcast.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR11MB4351.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 14aa6abc-aac5-4d90-9044-08dbbdf89f19
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Sep 2023 18:52:52.1233 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 906aefe9-76a7-4f65-b82d-5ec20775d5aa
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: VBFbQ4CNqBTlfKSqzKIfzOPUPaJal9lV0nMiN288igfbsyhA/tF53ViEWEiaJNVrduQPRhZucvxztvJNJzHOFHjaD2Te87pJ5cbqvMaml58=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BL1PR11MB5287
X-Proofpoint-GUID: gsiyV8cdK5DkzEuZaxCwtH2BpJpkSUsN
X-Proofpoint-ORIG-GUID: gsiyV8cdK5DkzEuZaxCwtH2BpJpkSUsN
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.267,Aquarius:18.0.980,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2023-09-25_16,2023-09-25_01,2023-05-22_02
X-Proofpoint-Spam-Reason: safe
Archived-At: <https://mailarchive.ietf.org/arch/msg/bimi/G3eTRTy6KBkJmvedNnQ-Yyn0sFM>
Subject: Re: [Bimi] Bimi logo hosting
X-BeenThere: bimi@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Brand Indicators for Message Identification <bimi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bimi>, <mailto:bimi-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bimi/>
List-Post: <mailto:bimi@ietf.org>
List-Help: <mailto:bimi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bimi>, <mailto:bimi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Sep 2023 18:53:05 -0000

As far as the spec is concerned, you can definitely host on a separate domain/server.  I suppose it’s possible that some MBP may decide that could be a risk, I’m not aware of any that have done this yet.

See:
default._bimi.emails.xfinity.com. 10800 IN TXT  "v=BIMI1;a=https://postmaster.comcast.net/bimi_logos/emails.xfinity.com.pem;l=https://postmaster.comcast.net/bimi_logos/xfinity.svg"

I’m not aware we’ve had issues because they weren’t on the same domain.

--
Alex Brotman
Sr. Engineer, Anti-Abuse & Messaging Policy
Comcast

From: bimi <bimi-bounces@ietf.org> On Behalf Of Ivan Hadzhiev
Sent: Monday, September 25, 2023 10:15 AM
To: bimi@ietf.org
Subject: [Bimi] Bimi logo hosting


Hello,

I've a simple question.

I read the FAQ questions on bimigroup.org.

Is it a problem if I want to have BIMI on myemaildomain.com but the images (the image path) is myimagehost.com?
The logo referenced by the “l=” value in the BIMI record can resolve to any domain and directory path. It does not need to match the domain where the BIMI logo is published.

Then i read the google Troubleshoot BIMI issues:
BIMI image issues

  *   Verify the SVG file for your brand logo meets the requirements and recommendations for BIMI image files.
  *   Verify the SVG file is accessible on your public web server.
  *   Verify the public web server is in the same domain as the domain where you added the DNS TXT record for BIMI.
  *   Verify the URL for the SVG file is correct in your BIMI record.

Which one is correct?

If i host my logo on 3rd party server could that be a problem?



Thank you.

P.S.

I've dmarc p=reject, and VMC, so there is no other reason to not show my logo instead of hosting.

Also the bimi record passed all available checks.