Re: [dmarc-ietf] p=quarantine

Michael Thomas <mike@mtcc.com> Tue, 15 December 2020 03:36 UTC

Return-Path: <mike@fresheez.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 36B0E3A0127 for <dmarc@ietfa.amsl.com>; Mon, 14 Dec 2020 19:36:30 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.15
X-Spam-Level:
X-Spam-Status: No, score=0.15 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.25, NICE_REPLY_A=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=mtcc.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id P_AQK4d0f05t for <dmarc@ietfa.amsl.com>; Mon, 14 Dec 2020 19:36:29 -0800 (PST)
Received: from mail-pf1-x42a.google.com (mail-pf1-x42a.google.com [IPv6:2607:f8b0:4864:20::42a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3137C3A0121 for <dmarc@ietf.org>; Mon, 14 Dec 2020 19:36:29 -0800 (PST)
Received: by mail-pf1-x42a.google.com with SMTP id 131so13617963pfb.9 for <dmarc@ietf.org>; Mon, 14 Dec 2020 19:36:29 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mtcc.com; s=fluffulence; h=subject:to:references:from:message-id:date:user-agent:mime-version :in-reply-to:content-transfer-encoding:content-language; bh=XZtE5y/9diEkZRNWCin3wn2quS4Unif2Wmvw4trW3G4=; b=fXbtFyhDg/ksCyRKpThXqnmMTdmD0Z0/LdMXC/T7wk6fclEfVMiGiAIxB1MxGT+9Hr 1xFep56A0FFY8S3Y9rrIn/taQVyOJfgqexy7eaHNdN2R/SVipKKvbfiN+TByTVV0PuLE Y4cxZFnE98kF+BwTyFr0TVr6k/USID6Si/f+wWbvjbVITPlO5B/kPfsosbwJu+dVMwJp zMUJi09Xe7iRnYbF2Wlqbshs0yz3+SHK39FPkT0Vay306o3Pb5pVCOPRE0bJDotUquL9 T6qc/AbcIBmbpZnHcUWs0x1gr4G3j9RbMJNF+A+0H+8wZl75BviN4nau0n/+u+4aUv3d cadw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-transfer-encoding :content-language; bh=XZtE5y/9diEkZRNWCin3wn2quS4Unif2Wmvw4trW3G4=; b=tS86LRwrZ0/tgk0OxvYBzY3mfxmwij9Pbeac00m54RxA/dMxcM+Z4e9eXDxXtZhChO 8dvrMtDL7xfr/eubUaEq7Ycq0ZJrXLD/Mg+2ZWLtF2JQ++JAJPUVOSOCbP6JpOD3SnWM z0uBwHFBbDMIFOuhCVJdqujAs2wroeJJEp5cA1FBN6UBBspnlXqulhD5wqUty1gzEw2W GzPQNWQmwPmiIcjFgbbldNfQYMmgpYEfPlsFYNPOEfYaiPjA3lXV2MhKhSh5s4R2AfBh zXX776/T1IoZCWxgGgpPfcARPGPwnKyWX48uFUBZ4woay4KTSaIOgrBNHZk7jBRl45O3 vRUQ==
X-Gm-Message-State: AOAM533hcIWDQQUp/FhsKty9Jx/0kW+1h/przPAl+tXP0ctp1/6cwL0u bbmMcKJyMf9yUOdhuo3m0VaiZR+Sr35Mdg==
X-Google-Smtp-Source: ABdhPJxruWT0JxYz28hJs1Mc94J0dsQa+alWRVlZ2uIXx9lfTtku83Cjqm78CDgOC8tICQKAn5DBbg==
X-Received: by 2002:a62:3582:0:b029:19e:4935:bea2 with SMTP id c124-20020a6235820000b029019e4935bea2mr26360755pfa.34.1608003388115; Mon, 14 Dec 2020 19:36:28 -0800 (PST)
Received: from mike-mac.lan ([206.107.197.128]) by smtp.gmail.com with ESMTPSA id u12sm20636211pfn.88.2020.12.14.19.36.26 for <dmarc@ietf.org> (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Mon, 14 Dec 2020 19:36:27 -0800 (PST)
To: dmarc@ietf.org
References: <20201211173722.6B4DF29782C7@ary.qy> <ea074aad-971b-abc6-d557-ea2f433b3cc7@gmail.com> <CAH48ZfxEjGHv99z3RGj+Z+KJaFVPvm6RG4UzkKuOoDQDVCmb3g@mail.gmail.com> <A5E108DC-2692-4927-B2C1-AE3FED6DA8AA@wordtothewise.com> <CAH48ZfwkPEgexwGvyMT_PevMM5ngBT_XRfHYi7Wy1yxMw1LP1A@mail.gmail.com> <A07FA3DE-4C51-48C4-A2E7-067987200E1F@wordtothewise.com> <CAH48ZfwykEJM9AXKrp+SS4SgM4N1W70eLqHW+PXB18a_TrV6iw@mail.gmail.com>
From: Michael Thomas <mike@mtcc.com>
Message-ID: <02f786e5-b7cd-9a89-e3e3-73594f3bcda0@mtcc.com>
Date: Mon, 14 Dec 2020 19:36:26 -0800
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:78.0) Gecko/20100101 Thunderbird/78.5.0
MIME-Version: 1.0
In-Reply-To: <CAH48ZfwykEJM9AXKrp+SS4SgM4N1W70eLqHW+PXB18a_TrV6iw@mail.gmail.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 8bit
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/BvJd84co3y7wG4_s6VgEf5bNEMA>
Subject: Re: [dmarc-ietf] p=quarantine
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 15 Dec 2020 03:36:30 -0000

On 12/14/20 7:26 PM, Douglas Foster wrote:
>
> But what I am trying to figure out is under what circumstances a DMARC 
> policy can be considered actionable.  Do I conclude that 
> "p=quarantine" means "domain is still collecting data, so results are 
> unpredictable"?   Or do I conclude that it means "Domain is fully 
> deployed and failure to validate is a highly suspicious event?"


Yeah, that's why I question whether there is something actionable and 
whether this is so much wishful thinking. Somebody did say that they 
took action on it (gmail?), but i'm not sure whether that is a good 
thing or a bad thing. For mailing lists, that would seemingly be a bad 
thing, but if you're of the mind that mailing lists are a security bug 
and not a feature that might be contradictory.

Mike