Re: [dmarc-ietf] WG Review: Domain-based Message Authentication, Reporting & Conformance (dmarc)

Hector Santos <hsantos@isdg.net> Wed, 16 July 2014 16:52 UTC

Return-Path: <hsantos@isdg.net>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 846CA1A0068 for <dmarc@ietfa.amsl.com>; Wed, 16 Jul 2014 09:52:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102
X-Spam-Level:
X-Spam-Status: No, score=-102 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, MIME_QP_LONG_LINE=0.001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, USER_IN_WHITELIST=-100] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mkg-Elqrq9km for <dmarc@ietfa.amsl.com>; Wed, 16 Jul 2014 09:52:09 -0700 (PDT)
Received: from mail.catinthebox.net (catinthebox.net [208.247.131.9]) by ietfa.amsl.com (Postfix) with ESMTP id B00661A0073 for <dmarc@ietf.org>; Wed, 16 Jul 2014 09:52:01 -0700 (PDT)
DKIM-Signature: v=1; d=isdg.net; s=tms1; a=rsa-sha1; c=simple/relaxed; l=3668; t=1405529513; h=Received:Received: Message-Id:From:Subject:Date:To:Organization:List-ID; bh=HvFpRmk nOY8XDnMykw+o9NWE9MM=; b=oLrompWpKP5FNubVkYEVsN6araKN/EJDVQ2yxJo DLOfH/Vi7te5I7i2AipjRZpfFIDeNv2hgtU+33qY4mJ1nIcKOMt7kxwN4wVkYvQE DEGMDvymiv0sDXSPcPzA4IA0SOPP+DZ6UurQWKWK2+LVZV6fM3xIdEs7D9EwECy+ NR0E=
Received: by winserver.com (Wildcat! SMTP Router v7.0.454.4) for dmarc@ietf.org; Wed, 16 Jul 2014 12:51:53 -0400
Received: from [192.168.1.221] (99-72-160-212.lightspeed.miamfl.sbcglobal.net [99.72.160.212]) by winserver.com (Wildcat! SMTP v7.0.454.4) with ESMTP id 714627742.65.5232; Wed, 16 Jul 2014 12:51:47 -0400
References: <20140714164212.22974.20340.idtracker@ietfa.amsl.com> <53C42DB3.5060801@gmail.com>
Mime-Version: 1.0 (1.0)
In-Reply-To: <53C42DB3.5060801@gmail.com>
Content-Type: multipart/alternative; boundary="Apple-Mail-639E0B8D-B48F-484E-9CF5-CE7FC2AC4D6D"
Content-Transfer-Encoding: 7bit
Message-Id: <ED20B4BE-74DD-4D0C-9023-284BA4311700@isdg.net>
X-Mailer: iPad Mail (11B651)
From: Hector Santos <hsantos@isdg.net>
Date: Wed, 16 Jul 2014 12:51:44 -0400
To: Dave Crocker <dcrocker@gmail.com>
Archived-At: http://mailarchive.ietf.org/arch/msg/dmarc/IrrqNuGbtDM87tfhObh0wixLMHY
Cc: Pete Resnick <presnick@qti.qualcomm.com>, dmarc WG <dmarc@ietf.org>, "ietf@ietf.org" <ietf@ietf.org>
Subject: Re: [dmarc-ietf] WG Review: Domain-based Message Authentication, Reporting & Conformance (dmarc)
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 16 Jul 2014 16:52:12 -0000

> 
>>   References
>>   ----------
>> 
>>   DMARC - http://dmarc.org
>>   SPF - RFC7208
>>   DKIM - RFC6376
>>   Internet Message Format - RFC5322
>>   OAR / Original Authentication Results -
>>      draft-kucherawy-original-authres
>>   Using DMARC -  draft-crocker-dmarc-bcp-03
> 
> 
> This is missing two citations that I thought were supposed to be
> included, since they touch on indirect email flows:
> 
>   Delegating DKIM Signing Authority - draft-kucherawy-dkim-delegate-00
>   DKIM Third-Party Authorization Label - draft-otis-dkim-tpa-label-03

Why not ATPS RFC6541 production?

http://tools.ietf.org/html/rfc6541

Consider ATPS the "lite version" of Doug's TPA. The same lookup hashing algorithm is used in both.  Further, there is real high quality commercial "running code" implementations supporting rfc6541.  All of our installations have DKIM+ADSP+ATPS out of the box with their primary domain used for automated first time setup plug and play readiness.

--
Hector Santos
http://www.santronics.com