Re: [dmarc-ietf] Revisiting the Race Condition in draft-crocker-dmarc-sender-01

Dotzero <dotzero@gmail.com> Wed, 19 August 2020 16:27 UTC

Return-Path: <dotzero@gmail.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E0E4D3A0CE3 for <dmarc@ietfa.amsl.com>; Wed, 19 Aug 2020 09:27:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id upMOko9HX6MU for <dmarc@ietfa.amsl.com>; Wed, 19 Aug 2020 09:27:12 -0700 (PDT)
Received: from mail-qv1-xf35.google.com (mail-qv1-xf35.google.com [IPv6:2607:f8b0:4864:20::f35]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 884E83A0CDA for <dmarc@ietf.org>; Wed, 19 Aug 2020 09:27:12 -0700 (PDT)
Received: by mail-qv1-xf35.google.com with SMTP id x7so11538280qvi.5 for <dmarc@ietf.org>; Wed, 19 Aug 2020 09:27:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=nFZ0yZ8LA5i5DXxXBqGI3soSWEkrCjr/JN8cqQ+yWkY=; b=BEBuedplDOfel6LaDDqjHyX6HfRaTL1ZMEgbIxNi5KDX/QITldUJXEhHVrAp0uI/zV VbDi999k2Wrs+0qVzXBn5+lo3fCqgYbJeUO1qXfBypbmVq6ezNdKVWm4YOeeqAOnp8ja ACe4u/ZthsxUWc0hHwodXDJ3cAtlPsRk8ohkyIOzmWbCbJyGrMLCZcloH7zyifQKBya2 JFufxtC513hGdRBwZFafHKyEn0L6gs4VjYznt/j1CYBQAxZLkt8N0oVICKUpVnHWwo0k 1KfkliTReQLAagitavPVOXuVUso3X9KF5MemSB2NrwDwmxGUZBNMZ07XrVU0MA5hXPMc 0kRw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=nFZ0yZ8LA5i5DXxXBqGI3soSWEkrCjr/JN8cqQ+yWkY=; b=o/7+kmRYidlHbU+S950rmM9DcxK8WhoLg5stHBr/K7btpDeLAbijLToFNuavDPsNcm 53hLikrlHGvW6Iez3Z8ts6JBmkW+9Nmw1ykFJ/tYfN3zrSadyNx520yZBLbJoTARExUc 5U28gcKhsFJKEAIPrwxxr6ReTjfF/EU10lFh3wV5WoTxeO/mon/vZkl25F8gdu7UJS6N qlfDfYfGa4lOWZlet6cyhfIL/pFmgBJv2Tj9vEpEccNEjEWNs3SzN5XoCS59vnhxsvW5 BjvdtArvA4llSqwixEvp7juLTvuLeZabf8IjljiEO6o/yhkTNM7hO2ujH+0z0vid2Sim 6uOA==
X-Gm-Message-State: AOAM533A4XP/o8zAsJDYS+BphXnOBTKlLgXHEW/Gs0etZLwl7ZibpZlj 4blpJD4LYFTksDLQjXwAdV3CR0TgGDhHE4fnCJjG1sMfHxs=
X-Google-Smtp-Source: ABdhPJzgI5V4/LXTf/QBuxi9WMmM5iKE8EkwhVi2nz59mSkE9qKKB5hOgDWlSm8f6a5g37dMn3nrhKi+Eaxy5j6aNxg=
X-Received: by 2002:ad4:438e:: with SMTP id s14mr23977963qvr.18.1597854431597; Wed, 19 Aug 2020 09:27:11 -0700 (PDT)
MIME-Version: 1.0
Received: by 2002:a0c:fcd0:0:0:0:0:0 with HTTP; Wed, 19 Aug 2020 09:27:10 -0700 (PDT)
In-Reply-To: <8e939d83-3cc8-3989-4e48-7e79e7e86973@taugh.com>
References: <CAJ4XoYcue16VU6otKOzQBFy_59nD8DGcDQb8H=Z0MsX-XLah8w@mail.gmail.com> <20200819004724.16EE11EED520@ary.local> <CAJ4XoYfFKe1yKK5OBx91qJOxZNHSNptu7kHS_bKnyGo_wGLB_w@mail.gmail.com> <8e939d83-3cc8-3989-4e48-7e79e7e86973@taugh.com>
From: Dotzero <dotzero@gmail.com>
Date: Wed, 19 Aug 2020 12:27:10 -0400
Message-ID: <CAJ4XoYfFWbGky+A7GXZeTAth_5JQz1y8QQXsGW-bQ=86CUTt5A@mail.gmail.com>
To: John R Levine <johnl@taugh.com>
Cc: "dmarc@ietf.org" <dmarc@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000cc59b705ad3d7918"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/9OYGsp7ICrF7N7fIbGM7MsgAFl8>
Subject: Re: [dmarc-ietf] Revisiting the Race Condition in draft-crocker-dmarc-sender-01
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 19 Aug 2020 16:27:14 -0000

On Wednesday, August 19, 2020, John R Levine <johnl@taugh.com> wrote:

> On Wed, 19 Aug 2020, Dotzero wrote:
>
>> If the people you claim don't want the outcome they have as a result of
>> the
>> DMARC policy that they published then maybe they should publish a
>> different
>> policy. Have you considered contracting them, any of them, to tell them
>> you
>> know their wishes better than they do?
>>
>
> Ericsson publishes p=reject over the objections of their employees, some
> fairly high in the hierarchy, who they subsidize to participate in the IETF
> and its mailing lists.  I've coached some of them on what to say, didn't
> help.


Then Ericcson as an organization has made a decision regardless of the
objections of those employees. The correct thing for Ericcson as an
organization to do is to publish an internal policy that employees should
not use company mail for participating in mailing lists. An alternative to
that would be for them to hire someone to help them come up with a workable
approach. We both know plenty of people who could help them.

>
> Of course you personally know what DMARC policies mean and what they
> imply.  But every time a list has to rewrite a From line, we have evidence
> that someone else doesn't or at best doesn't care.*


I'm going to guess that more often than not it is the latter. *I heard the
same. Too big to care?


> R's,
> John
>
> * - I have on excellent authority that when Yahoo published p=reject to
> outsource the costs of their security breaches, Marissa Meyer said she knew
> it would break everyone's mailing lists and she didn't care.
>

 Michael Hammer