Re: [Bimi] [EXTERNAL] Re: Bimi logo hosting

Tom Bartel <Tom.Bartel@validity.com> Mon, 25 September 2023 20:55 UTC

Return-Path: <tom.bartel@validity.com>
X-Original-To: bimi@ietfa.amsl.com
Delivered-To: bimi@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B7F8EC17CEA7 for <bimi@ietfa.amsl.com>; Mon, 25 Sep 2023 13:55:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.106
X-Spam-Level:
X-Spam-Status: No, score=-1.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, PDS_BAD_THREAD_QP_64=0.999, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=validity.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TEDYt_c8usl2 for <bimi@ietfa.amsl.com>; Mon, 25 Sep 2023 13:55:20 -0700 (PDT)
Received: from us-smtp-delivery-199.mimecast.com (us-smtp-delivery-199.mimecast.com [170.10.133.199]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C0363C131954 for <bimi@ietf.org>; Mon, 25 Sep 2023 13:55:19 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=validity.com; s=mimecast20200204; t=1695675318; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=C8M9fon/GLgl3gj9/RH3Pvw09Qv5yl9rCNLwFacV3qY=; b=OnJGOzC3o0vd0tL5Zy12xADCRL64a/HitvRAwT7frbES0o8J3SD22qShEnx56R7xHb+Trg XcnfFiP4gMdu9NvmVcOeibEHCEPv1AuWRT8+W704TkHgeKHUTgNPBa7okWRqQ1OxxhQuW+ 3cYb93fm5zrdD7DiyaO50yd7etavp/A=
Received: from NAM11-DM6-obe.outbound.protection.outlook.com (mail-dm6nam11lp2168.outbound.protection.outlook.com [104.47.57.168]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id us-mta-532-pt9TIr-iMzGPjiD79JGepA-1; Mon, 25 Sep 2023 16:55:17 -0400
X-MC-Unique: pt9TIr-iMzGPjiD79JGepA-1
Received: from MN6PR08MB8719.namprd08.prod.outlook.com (2603:10b6:208:471::8) by SJ0PR08MB6672.namprd08.prod.outlook.com (2603:10b6:a03:2d2::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6813.28; Mon, 25 Sep 2023 20:55:12 +0000
Received: from MN6PR08MB8719.namprd08.prod.outlook.com ([fe80::c4b3:5457:8736:e7ca]) by MN6PR08MB8719.namprd08.prod.outlook.com ([fe80::c4b3:5457:8736:e7ca%3]) with mapi id 15.20.6813.017; Mon, 25 Sep 2023 20:55:12 +0000
From: Tom Bartel <Tom.Bartel@validity.com>
To: Mark Alley <mark.alley=40tekmarc.com@dmarc.ietf.org>, "bimi@ietf.org" <bimi@ietf.org>
Thread-Topic: [EXTERNAL] Re: [Bimi] Bimi logo hosting
Thread-Index: AQHZ7+Ga5MtdikGYm0e4S10Y66PhDbAr8zgAgAASFZE=
Date: Mon, 25 Sep 2023 20:55:12 +0000
Message-ID: <MN6PR08MB871995375D2E780442325F39F3FCA@MN6PR08MB8719.namprd08.prod.outlook.com>
References: <f2cf5e6c-d177-8eac-bfea-54fd15703b6a@iovo.me> <MN2PR11MB43516B9DFDAE5B4CF1798D14F7FCA@MN2PR11MB4351.namprd11.prod.outlook.com> <47719179-cf86-7a48-7624-4c3e0f9a1019@tekmarc.com>
In-Reply-To: <47719179-cf86-7a48-7624-4c3e0f9a1019@tekmarc.com>
Accept-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN6PR08MB8719:EE_|SJ0PR08MB6672:EE_
x-ms-office365-filtering-correlation-id: 3569fde7-1493-4146-b190-08dbbe09b65e
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN6PR08MB8719.namprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(346002)(376002)(39850400004)(396003)(366004)(136003)(230922051799003)(451199024)(186009)(1800799009)(86362001)(33656002)(19627405001)(55016003)(6506007)(1015004)(52536014)(71200400001)(26005)(5660300002)(53546011)(76116006)(966005)(9686003)(64756008)(110136005)(66446008)(66476007)(66556008)(66946007)(316002)(41300700001)(478600001)(8676002)(8936002)(7696005)(19627235002)(2906002)(166002)(38100700002)(38070700005)(122000001)(83380400001); DIR:OUT; SFP:1101
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
MIME-Version: 1.0
X-OriginatorOrg: validity.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN6PR08MB8719.namprd08.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 3569fde7-1493-4146-b190-08dbbe09b65e
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Sep 2023 20:55:12.6600 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 02d52711-4fe8-4970-a26a-3e523663a7f8
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: bjbgwLP1cTHujfex5iEj25dDJFATsqOTEQOouID+iMU+ByzqnIQMf5xFwXT7zKqNjTUcd3QG2yITnejJz5FK+Q==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SJ0PR08MB6672
X-Mimecast-Spam-Score: 0
X-Mimecast-Originator: validity.com
Content-Language: en-US
Content-Type: multipart/alternative; boundary="_000_MN6PR08MB871995375D2E780442325F39F3FCAMN6PR08MB8719namp_"
Archived-At: <https://mailarchive.ietf.org/arch/msg/bimi/SkG6F-sgyAUsWtZooOYZJ7uKCfA>
Subject: Re: [Bimi] [EXTERNAL] Re: Bimi logo hosting
X-BeenThere: bimi@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Brand Indicators for Message Identification <bimi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bimi>, <mailto:bimi-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bimi/>
List-Post: <mailto:bimi@ietf.org>
List-Help: <mailto:bimi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bimi>, <mailto:bimi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Sep 2023 20:55:24 -0000

Another item to be wary of is hosting images on hosting systems with "bot protection" as this can block the retrieval of the image file.  We've seen this a few times.

https://bimigroup.org/faqs-for-senders-esps/?#FAQ_20
________________________________
From: bimi <bimi-bounces@ietf.org> on behalf of Mark Alley <mark.alley=40tekmarc.com@dmarc.ietf.org>
Sent: Monday, September 25, 2023 1:50 PM
To: bimi@ietf.org <bimi@ietf.org>
Subject: [EXTERNAL] Re: [Bimi] Bimi logo hosting


I know of several organizations hosting their logos and certificates through Entrust (i.e. the cert and logo hosting domain are Entrust's), and as far as I'm aware they have not had any issues with Google displaying their logos, although if Google's policy on that changed recently, take that with a grain of salt.

- Mark Alley


On 9/25/2023 1:52 PM, Brotman, Alex wrote:

As far as the spec is concerned, you can definitely host on a separate domain/server.  I suppose it’s possible that some MBP may decide that could be a risk, I’m not aware of any that have done this yet.



See:

default._bimi.emails.xfinity.com. 10800 IN TXT  "v=BIMI1;a=https://postmaster.comcast.net/bimi_logos/emails.xfinity.com.pem;l=https://postmaster.comcast.net/bimi_logos/xfinity.svg"



I’m not aware we’ve had issues because they weren’t on the same domain.



--

Alex Brotman

Sr. Engineer, Anti-Abuse & Messaging Policy

Comcast



From: bimi <bimi-bounces@ietf.org><mailto:bimi-bounces@ietf.org> On Behalf Of Ivan Hadzhiev
Sent: Monday, September 25, 2023 10:15 AM
To: bimi@ietf.org<mailto:bimi@ietf.org>
Subject: [Bimi] Bimi logo hosting



Hello,

I've a simple question.

I read the FAQ questions on bimigroup.org.

Is it a problem if I want to have BIMI on myemaildomain.com but the images (the image path) is myimagehost.com?
The logo referenced by the “l=” value in the BIMI record can resolve to any domain and directory path. It does not need to match the domain where the BIMI logo is published.

Then i read the google Troubleshoot BIMI issues:

BIMI image issues

  *   Verify the SVG file for your brand logo meets the requirements and recommendations for BIMI image files.
  *   Verify the SVG file is accessible on your public web server.
  *   Verify the public web server is in the same domain as the domain where you added the DNS TXT record for BIMI.
  *   Verify the URL for the SVG file is correct in your BIMI record.

Which one is correct?

If i host my logo on 3rd party server could that be a problem?



Thank you.

P.S.

I've dmarc p=reject, and VMC, so there is no other reason to not show my logo instead of hosting.

Also the bimi record passed all available checks.

Disclaimer

The information contained in this communication from the sender is confidential. It is intended solely for use by the recipient and others authorized to receive it. If you are not the recipient, you are hereby notified that any disclosure, copying, distribution or taking action in relation of the contents of this information is strictly prohibited and may be unlawful.