Re: [dmarc-ietf] Call for Adoption: DMARC Use of the RFC5322.Sender Header Field

"Murray S. Kucherawy" <superuser@gmail.com> Sat, 15 August 2020 16:49 UTC

Return-Path: <superuser@gmail.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6991D3A0775 for <dmarc@ietfa.amsl.com>; Sat, 15 Aug 2020 09:49:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5LHp97djJ-U1 for <dmarc@ietfa.amsl.com>; Sat, 15 Aug 2020 09:49:40 -0700 (PDT)
Received: from mail-vs1-xe30.google.com (mail-vs1-xe30.google.com [IPv6:2607:f8b0:4864:20::e30]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0E16F3A074B for <dmarc@ietf.org>; Sat, 15 Aug 2020 09:49:39 -0700 (PDT)
Received: by mail-vs1-xe30.google.com with SMTP id i129so6206695vsi.3 for <dmarc@ietf.org>; Sat, 15 Aug 2020 09:49:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=4tUd/g2xvYnj0ULIWtUfS/x5eKu8aIaWFH01AshRVpU=; b=vOLIdQVsAvVoKXc5kgu27Qxu+c3J9lIZZueuvdOjPMKNIPeP1CxXbOIpX+v/wkkXAv bELPyHWurBS3wEbv2oMGqfnH9ZteZ8eaW5xES43Qc8z5hrxVozJPFv8cVfSIp5F7QGeD 45NGBQIh71RLsG57sjZmw99PJdRcA8h9nXiWBe0ZiDtrcerYGi1cYP574dcQNksQGN4m U5j6vi93J1nAzC2IzUZuPPg3+eJoZ3SlTAUTbr6AI6c4R8qrCGkqQZGL53GvrKhUGoXH LdUvV4CATWPxc6yYoqOoImsQakGUUX/jgK6jAKBQ4gLiOBcPiDqe9cHSSbgycf5m321C NClQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=4tUd/g2xvYnj0ULIWtUfS/x5eKu8aIaWFH01AshRVpU=; b=PIOqxB5g95qX2D/AkWXYgAAPS/xTQZvkijQwOdqPejkyrF+vUeA3/1+w4j47/GJHao tOoYnBHzJi7QCqkS0Cf5JHCE36iXPVpNrOEvN80OYPjX5/NU4KFVxYYbB2Y9+ZCYK9uL WiatxYMix1wgaw7aSMz1y3rdFxK6GCbh5ZZaFRAsORst28moPuc/XE2UUOEIOqTRXOoW AOh9TMP1s8W15eeA0W3ORn2oiqM58UZsE3odhtULkqrr237sTK30Ymp07TH6AreoT+TU hKhQWL5O5U+8BK4V071c6GqCWHpgd+20UTK12frwNRnIptXJbX04MBNIisLX5hNZPpTj RbOQ==
X-Gm-Message-State: AOAM533j6AslhDeqVSC9h6g2XpYr5H3ng4Pftiqw1BQzLCVel2wOz905 YVZMMYKMUR5Ook9WVre/4mJ8VntdscziJ1m1HRw=
X-Google-Smtp-Source: ABdhPJyTX1IWsDwOGW+pMwiVrFBDfTsEpMbxa7lymH4hOIj9A0uansPYxqo6V6n5mDT3uEp7BRLi3nEk75MHZ+djOcY=
X-Received: by 2002:a05:6102:1c9:: with SMTP id s9mr4230531vsq.13.1597510178936; Sat, 15 Aug 2020 09:49:38 -0700 (PDT)
MIME-Version: 1.0
References: <CAJ4XoYcFbh8-nAxjxzzRgUahFfhcgcZQ2yMF2ewv_-DgUmhL=g@mail.gmail.com> <20200814164237.313071E971DB@ary.local> <CAJ4XoYeqj_5mpZu1PZP4rNfrWRyC5gC-2dfK7oX9xQHiR24QeA@mail.gmail.com> <085c6a5f-5451-ae8c-4873-133673ba1754@tana.it> <CAL0qLwaVUi9QtV4zcCwncuy4N3YPwsGZPzFfd1q19io79UG2VQ@mail.gmail.com> <c1844590-4b12-9763-21c5-6ac5b730321b@tana.it>
In-Reply-To: <c1844590-4b12-9763-21c5-6ac5b730321b@tana.it>
From: "Murray S. Kucherawy" <superuser@gmail.com>
Date: Sat, 15 Aug 2020 09:49:27 -0700
Message-ID: <CAL0qLwbgbabevZHp1-Udm=BiGmca5ihF9GtqpDs-evUPwr+EWg@mail.gmail.com>
To: Alessandro Vesely <vesely@tana.it>
Cc: IETF DMARC WG <dmarc@ietf.org>, John Levine <johnl@taugh.com>, Dotzero <dotzero@gmail.com>
Content-Type: multipart/alternative; boundary="000000000000bd99e305aced5207"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/3lxDJ609u3CzOrv5luF5JtbsY4s>
Subject: Re: [dmarc-ietf] Call for Adoption: DMARC Use of the RFC5322.Sender Header Field
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 15 Aug 2020 16:49:41 -0000

On Sat, Aug 15, 2020 at 3:32 AM Alessandro Vesely <vesely@tana.it> wrote:

> The workarounds we have on the table, to standardize From: rewriting
> possibly copying the original From: value to some other field
> (Author:, To:, Reply-To:), to verify DKIM modulo transformations, and
> to accept a tunable set of Sender:'s do have the potential to smooth
> enough harshness and thereby avoid that cans which invalidate
> themselves mess up the store and ruin nearby products, don't they?
>

They are all worthy of consideration, to be sure.  But that's not the thing
to which I was objecting.

The premise that MLMs have actually been long-tolerated abusers is a flawed
one, in my opinion.  I actually used to think the same thing back in the
RFC 4871 era, but I no longer agree.

-MSK