Re: [dmarc-ietf] I-D Action: draft-ietf-dmarc-dmarcbis-07.txt

Scott Kitterman <sklist@kitterman.com> Sun, 17 April 2022 20:54 UTC

Return-Path: <sklist@kitterman.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D3F9C3A15FD for <dmarc@ietfa.amsl.com>; Sun, 17 Apr 2022 13:54:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.11
X-Spam-Level:
X-Spam-Status: No, score=-2.11 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (unsupported algorithm ed25519-sha256)" header.d=kitterman.com header.b=ZjGHLUkL; dkim=pass (2048-bit key) header.d=kitterman.com header.b=K45/5JOU
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uLyo-XT_Oo2H for <dmarc@ietfa.amsl.com>; Sun, 17 Apr 2022 13:54:06 -0700 (PDT)
Received: from interserver.kitterman.com (interserver.kitterman.com [64.20.48.66]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8E25D3A160A for <dmarc@ietf.org>; Sun, 17 Apr 2022 13:54:06 -0700 (PDT)
Received: from interserver.kitterman.com (interserver.kitterman.com [IPv6:2604:a00:6:1039:225:90ff:feaa:b169]) by interserver.kitterman.com (Postfix) with ESMTPS id 06845F802C0 for <dmarc@ietf.org>; Sun, 17 Apr 2022 16:54:05 -0400 (EDT)
DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903e; t=1650228844; h=from : to : subject : date : message-id : in-reply-to : references : mime-version : content-transfer-encoding : content-type : from; bh=4jUbBeomK+GqQlmbcpiG4ql+lfTTDEGe43ORH1EhmP8=; b=ZjGHLUkLA3UiwRe6du/os3wQth3ztR758HbmVeVE77tKp4szhjyg0lW4O8k7n8VfFRL6k 0L/kqVDcHNB/0MTCw==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903r; t=1650228844; h=from : to : subject : date : message-id : in-reply-to : references : mime-version : content-transfer-encoding : content-type : from; bh=4jUbBeomK+GqQlmbcpiG4ql+lfTTDEGe43ORH1EhmP8=; b=K45/5JOUm3cpIEv+NQGVxmqzosf33i5w0P0q2pWva/W/BS3n7PmolS+86U9hVirI5VRrM wjJZ3k3ZPXv48ZPjfqSyTE/7w7To9YQJBry7p96pjGJhyA0Qt7n4GIvgFXJx7Zr8LFUA589 0tL7OUyLN6B3xSf45fMED8OoZQa3QbcrfNTQaEFAwwrI39LripHT9xF66BzKzLPcePZtDN3 Vhed3VXAUq32eZX0/cJ6ctTbR405PI2ZYozPeSENflwrR5ISbCpnqrWFPP5clVSFRLSl4SR ems8xb4S0pEoaSCKsqn0IHA1TLHV8A3RkKDTIySW37ZfcVM1bWxyk+f7sO+g==
Received: from zini-1880.localnet (static-72-81-252-22.bltmmd.fios.verizon.net [72.81.252.22]) by interserver.kitterman.com (Postfix) with ESMTP id D2A44F80267 for <dmarc@ietf.org>; Sun, 17 Apr 2022 16:54:04 -0400 (EDT)
From: Scott Kitterman <sklist@kitterman.com>
To: dmarc@ietf.org
Date: Sun, 17 Apr 2022 16:54:03 -0400
Message-ID: <4266119.zEdeCrfD3z@zini-1880>
In-Reply-To: <C1B57A82-E003-4578-AB88-A00E54428533@kitterman.com>
References: <164925666278.4445.13789431014958416691@ietfa.amsl.com> <CAHej_8me_FnA63_ySgMwRhXnq61ujuJat9ZKrmcqBuNA_5Zbmw@mail.gmail.com> <C1B57A82-E003-4578-AB88-A00E54428533@kitterman.com>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/SLfGJIuVSmUNoaLruFIDRk5xYUU>
Subject: Re: [dmarc-ietf] I-D Action: draft-ietf-dmarc-dmarcbis-07.txt
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 17 Apr 2022 20:54:11 -0000

I've finished going through this and also updated authheaders [1] to match.  It 
now has a script called dmarc-policy-find which you can used to determine the 
DMARC policy to be applied for a domain.  You can use RFC 7489, RFC 7489 + RFC 
9091, and DMARCbis-07.  

It does currently cheat and assume psd=y is in the records for domains on the 
PSD DMARC registry list, since no one has actually published that yet.

Scott K

[1] https://github.com/ValiMail/authentication-headers (also on pypi)

On Wednesday, April 6, 2022 12:27:04 PM EDT Scott Kitterman wrote:
> I believe it does.
> 
> Thanks,
> 
> Scott K
> 
> On April 6, 2022 2:53:59 PM UTC, Todd Herr 
<todd.herr=40valimail.com@dmarc.ietf.org> wrote:
> >I believe this rev has the proposed text that was submitted in various
> >messages in the thread titled "*5.5.4. Publish a DMARC Policy for the
> >Author Domain - dmarcbis-06"*
> >
> >On Wed, Apr 6, 2022 at 10:51 AM <internet-drafts@ietf.org> wrote:
> >> A New Internet-Draft is available from the on-line Internet-Drafts
> >> directories.
> >> This draft is a work item of the Domain-based Message Authentication,
> >> Reporting & Conformance WG of the IETF.
> >> 
> >>         Title           : Domain-based Message Authentication, Reporting,
> >> 
> >> and Conformance (DMARC)
> >> 
> >>         Authors         : Todd M. Herr
> >>         
> >>                           John Levine
> >>         
> >>         Filename        : draft-ietf-dmarc-dmarcbis-07.txt
> >>         Pages           : 62
> >>         Date            : 2022-04-06
> >> 
> >> Abstract:
> >>    This document describes the Domain-based Message Authentication,
> >>    Reporting, and Conformance (DMARC) protocol.
> >>    
> >>    DMARC permits the owner of an email author's domain name to enable
> >>    verification of the domain's use, to indicate the Domain Owner's or
> >>    Public Suffix Operator's message handling preference regarding failed
> >>    verification, and to request reports about use of the domain name.
> >>    Mail receiving organizations can use this information when evaluating
> >>    handling choices for incoming mail.
> >>    
> >>    This document obsoletes RFC 7489.
> >> 
> >> The IETF datatracker status page for this draft is:
> >> https://datatracker.ietf.org/doc/draft-ietf-dmarc-dmarcbis/
> >> 
> >> There is also an HTML version available at:
> >> https://www.ietf.org/archive/id/draft-ietf-dmarc-dmarcbis-07.html
> >> 
> >> A diff from the previous version is available at:
> >> https://www.ietf.org/rfcdiff?url2=draft-ietf-dmarc-dmarcbis-07
> >> 
> >> Internet-Drafts are also available by rsync at rsync.ietf.org:
> >> :internet-drafts
> >> 
> >> _______________________________________________
> >> dmarc mailing list
> >> dmarc@ietf.org
> >> https://www.ietf.org/mailman/listinfo/dmarc
> 
> _______________________________________________
> dmarc mailing list
> dmarc@ietf.org
> https://www.ietf.org/mailman/listinfo/dmarc