Re: [dmarc-ietf] 5.5.4. Publish a DMARC Policy for the Author Domain - dmarcbis-06

Todd Herr <todd.herr@valimail.com> Mon, 04 April 2022 14:01 UTC

Return-Path: <todd.herr@valimail.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 03B1B3A0A62 for <dmarc@ietfa.amsl.com>; Mon, 4 Apr 2022 07:01:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level:
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=valimail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ihYy82yZd8J5 for <dmarc@ietfa.amsl.com>; Mon, 4 Apr 2022 07:01:32 -0700 (PDT)
Received: from mail-qk1-x72c.google.com (mail-qk1-x72c.google.com [IPv6:2607:f8b0:4864:20::72c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 261083A0A4A for <dmarc@ietf.org>; Mon, 4 Apr 2022 07:01:32 -0700 (PDT)
Received: by mail-qk1-x72c.google.com with SMTP id d65so7662034qke.5 for <dmarc@ietf.org>; Mon, 04 Apr 2022 07:01:31 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=valimail.com; s=google2048; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=rpRo+9aRYV5z1eSf/kp4SvS1ZEIesOE1SEw3XSYRiw8=; b=Hmg5ae+bWhSYDp0i+hQKLjhsRY31SMIAGpuocUqFvVoWYM0JxxI/jYM0Y3OfKvR/Aw rwxd6oldUphKsk0QOMSnglzXi0RF7P5jY3EMOrx+SIQJIsChNiOmz/yOXYbcVISQX7Va PKo5KSx75NM909no8YAIGCcN2eCBixaGC1C8SqTPNyWQXl7/kw2G4ocsNPCpSU0PHOyd Fgtzo6GQaz2MRReKs1mEyAcVgriMEbvEF7hTbWebYdEjMRZrLxppZ8g/lsbTG79QzAXf ARB0AV70Pm+LIWHQ9qbNFJw7oiYjrhQLLBUn5p/y5xSAVs2hR6QMbQx+74lNG2xPwPGI 7PhQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=rpRo+9aRYV5z1eSf/kp4SvS1ZEIesOE1SEw3XSYRiw8=; b=64BVoHxIDgn/oUbtA8c1F9rNVpobPG9XO1M5H8EyF9d4diRHFaUQFF88xHpTw89epT SZSkKq/wUqXbWTojC0laGYET0Jh3Lu+AY5GFinoSGbM4QUZscTjzHMUoExhj+lC8de32 FXOiPoF09SoQ/2QTxCI/mz1T2nQrGY8Z2PTuvGTSl0ezwbR/XAhGoqExAvEwknFRZ00P 02bcvQQcSGikB8y3jJzh3clodVERvk6O17ROWupInLpzWGDDoqFb79tUtv8f23ztMSs1 fxrbe9VmWXcUbIiAIBqYzglvj+dSIkqHZ7wPEvif/Wj0MxzFGmNKqLWSoZ1JLjLRrPYS y/9g==
X-Gm-Message-State: AOAM530l7L4fjKcF0y0OrIEIhezol/PfoOHdd44u4SOK+h3SYHRkaUJY 2ryz+40KRjuaGukefj8lYZXwcVp98ylSMChpGQYIwP92B3I=
X-Google-Smtp-Source: ABdhPJznrU985fhrOepL/iur9as71KXWzC3lnI6m+gwweIub49xbVzZlBKoLDfYizgE9IiRj+F+qGGsqcGLKl5gOfdY=
X-Received: by 2002:a05:620a:172a:b0:67e:cda9:65ef with SMTP id az42-20020a05620a172a00b0067ecda965efmr14293423qkb.247.1649080889595; Mon, 04 Apr 2022 07:01:29 -0700 (PDT)
MIME-Version: 1.0
References: <20220403024904.479EA3A462E4@ary.qy> <2550778.P67xgtABij@zini-1880>
In-Reply-To: <2550778.P67xgtABij@zini-1880>
From: Todd Herr <todd.herr@valimail.com>
Date: Mon, 4 Apr 2022 10:01:13 -0400
Message-ID: <CAHej_8mOf0k2yVYMq4dnYAwGk1U69xP0LBjNZ+VZpTHNW_5j5A@mail.gmail.com>
To: Scott Kitterman <sklist@kitterman.com>
Cc: dmarc@ietf.org
Content-Type: multipart/alternative; boundary="000000000000a16b4105dbd4907c"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/GZDxHWalStWe5SO1FEYrOxRfcfs>
Subject: Re: [dmarc-ietf] 5.5.4. Publish a DMARC Policy for the Author Domain - dmarcbis-06
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 04 Apr 2022 14:01:37 -0000

On Mon, Apr 4, 2022 at 9:31 AM Scott Kitterman <sklist@kitterman.com> wrote:

> On Saturday, April 2, 2022 10:49:03 PM EDT John Levine wrote:
> > It appears that Scott Kitterman  <sklist@kitterman.com> said:
> > >Somewhat later than I had hoped, I've taken a shot at this.  Please see
> the
> > >attached proposed update from dmarcbis-06 and rfcdiff.
> >
> > Closer but of course, not quite right.
> >
> > >2.  In the policy discovery section I added a few sentences on which
> policy
> > >to use once the policy record is identified.  This doesn't change
> anything
> > >relative to what's currently defined, but it seems to me that if we are
> > >going to have a discussion of policy discovery we should take it all the
> > >way to determining the poilcy and not stop at the determination of the
> > >record to use to determine the policy.
> >
> > It still gets the wrong answer for psd=n above psd=y.
> >
> > I think it needs to say you walk up. At each step if you find psd=n,
> > that is the org domain and you stop. If you find psd=y, that is the
> > PSD, the org is the name beneath it, and you stop. (If the one beneath
> > it has no DMARC record, is it still the org domain? I think it is.)
> >
> > If you get to the top and there was no record with psd=y or psd=n, the
> > org is the highest DMARC record you found.
> >
> > This means if you find psd=n or psd=y you stop, if you find psd=u keep
> > going.
>
> I think the attached addresses this.  I also tried to make it clear that
> if
> there's only one domain (common 5322.From, 5321.MailFrom, and d=), then no
> tree walk is needed.
>
> The diff is relative the last text I posted.
>
>
Thank you, Scott.

I will wait a day or two to allow further discussion to continue before
publishing a new rev.

-- 

*Todd Herr * | Technical Director, Standards and Ecosystem
*e:* todd.herr@valimail.com
*m:* 703.220.4153

This email and all data transmitted with it contains confidential and/or
proprietary information intended solely for the use of individual(s)
authorized to receive it. If you are not an intended and authorized
recipient you are hereby notified of any use, disclosure, copying or
distribution of the information included in this transmission is prohibited
and may be unlawful. Please immediately notify the sender by replying to
this email and then delete it from your system.