Re: [dmarc-ietf] "psd=" tag early assignment

John R Levine <johnl@taugh.com> Sun, 10 July 2022 16:53 UTC

Return-Path: <johnl@taugh.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E8D73C14CF0F for <dmarc@ietfa.amsl.com>; Sun, 10 Jul 2022 09:53:51 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level:
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=iecc.com header.b=AvzeX/Uq; dkim=pass (2048-bit key) header.d=taugh.com header.b=j1Qu9ZpP
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jMvoc0_XyTGG for <dmarc@ietfa.amsl.com>; Sun, 10 Jul 2022 09:53:47 -0700 (PDT)
Received: from gal.iecc.com (gal.iecc.com [IPv6:2001:470:1f07:1126:0:43:6f73:7461]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 17799C157B42 for <dmarc@ietf.org>; Sun, 10 Jul 2022 09:53:25 -0700 (PDT)
Received: (qmail 98725 invoked from network); 10 Jul 2022 16:53:23 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:subject:in-reply-to:references:mime-version:content-type; s=181a1.62cb0403.k2207; bh=UVYSMM3GqcshXV2wyIL4oeloNBancAURVa6jd5FAoDE=; b=AvzeX/Uqp5sflmo63qjUTg1GI/fkUJ/804N2TlBgUQE/jyzBJm47EZMZXMEp7l330hjPHf6XZEB3ty7sq1cqJ9TncCT5VGjALbsZichlyLjmgjWVRcczh+wyoEI6tjs8QUHXo97haXyJ82LqfFq+lrH7LOvnFMDAPXdvk+cFtd/xnLk4uZReUtAwsDAmgTkHVSY43jveNc7TvIOwQJsVgKzyZ0AJYdoQZi/PhGpTTDoQalML/zJcJ7PgwgnvvXolqrDSucfmwn2LX2bVp2gehoogp8q8H+NNo2y8pCjX+78yH9ik6b8Ac2Td2Y1HEWwaV+i4lG3eeZAp13dncyGrRw==
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:subject:in-reply-to:references:mime-version:content-type; s=181a1.62cb0403.k2207; bh=UVYSMM3GqcshXV2wyIL4oeloNBancAURVa6jd5FAoDE=; b=j1Qu9ZpP+npvoA8asXkgJs5y/zNWXxDGYWi2hEUYf/M3jWKWmOTF/nNbX3CvIY4a1C++J6y7if342LwAZfFESnN+0KYSU2m98Jap1oh3+xIte1oGdyqJpAMUSIZ7n5DzLkWCm561i8GzGZwCxpyuM2gXIg1niSnFpbcAJAoosY9xcQynfGHxxz53vuXfqBqR/EMI9H0nh1ZGqtn4h+dDuhZIQYibBoamJL4dKOiv/aX/X39mmIs2hUfo04+SrVZR4XOLAEaFnpD6kcWjmqq+WF1omxRRrvbmOlgYzd4eM+uBUIxXoskYxPIx2GFmtO6QQsk4vLvA0UEynguEShDCtQ==
Received: from ary.qy ([IPv6:2001:470:1f07:1126::78:696d:6170]) by imap.iecc.com ([IPv6:2001:470:1f07:1126::78:696d:6170]) with ESMTPS (TLS1.3 ECDHE-RSA AES-256-GCM AEAD) via TCP6; 10 Jul 2022 16:53:22 -0000
Received: by ary.qy (Postfix, from userid 501) id 37DC145523DB; Sun, 10 Jul 2022 12:53:21 -0400 (EDT)
Received: from localhost (localhost [127.0.0.1]) by ary.qy (Postfix) with ESMTP id B485B45523BD; Sun, 10 Jul 2022 12:53:21 -0400 (EDT)
Date: Sun, 10 Jul 2022 12:53:21 -0400
Message-ID: <5ed5884e-9e93-d619-9bf0-80d302ab2844@taugh.com>
From: John R Levine <johnl@taugh.com>
To: Scott Kitterman <sklist@kitterman.com>, dmarc@ietf.org
X-X-Sender: johnl@ary.qy
In-Reply-To: <A57161E2-4AA5-47B8-A4DC-05FE35CCAC43@kitterman.com>
References: <20220710010547.DB3B04532F40@ary.qy> <A57161E2-4AA5-47B8-A4DC-05FE35CCAC43@kitterman.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="US-ASCII"; format="flowed"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/-CuszwxziUnDYIFLjH2CXy1Moow>
Subject: Re: [dmarc-ietf] "psd=" tag early assignment
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 10 Jul 2022 16:53:52 -0000

>> I changed it in a pull request a few weeks ago.
>>
>> If you don't stop on the first psd=y that is not the original domain,
>> you get the wrong result if there are DMARC records above the psd=y.
>>
>> I sent this example on June 21, link is
>> https://mailarchive.ietf.org/arch/msg/dmarc/T-8NX63L8ilHPhHXMygKdTJ6zMM/
>>
>> a NXDOMAIN (or psd=y, doesn't matter)
>> b.a blah
>> c.b.a psd=y
>> d.c.b.a blah
>> e.d.c.b.a NXDOMAIN
>>
>> I think the org domain for e.d.c.b.a is d.c.b.a.
>>
>> If you don't stop at the psd=y, you get b.a as the org domain which still looks wrong to me.
>>
>> The description in the current draft gets d.c.b.a.
>
> Thanks.  I remember now.  I viewed this as bug fixing the documentation, not any kind of substantive design changes.

Right, we all agreed what result we wanted, but without the stop this case 
got the wrong answer.

Regards,
John Levine, johnl@taugh.com, Taughannock Networks, Trumansburg NY
Please consider the environment before reading this e-mail. https://jl.ly