Re: [dmarc-ietf] Final, I hope, tweaks to the tree walk

Scott Kitterman <sklist@kitterman.com> Tue, 19 July 2022 23:05 UTC

Return-Path: <sklist@kitterman.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5290CC15949B for <dmarc@ietfa.amsl.com>; Tue, 19 Jul 2022 16:05:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level:
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (unsupported algorithm ed25519-sha256)" header.d=kitterman.com header.b=DtEjSBgA; dkim=pass (2048-bit key) header.d=kitterman.com header.b=JQYTjAjv
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7Q3IKp8GpmIP for <dmarc@ietfa.amsl.com>; Tue, 19 Jul 2022 16:05:29 -0700 (PDT)
Received: from interserver.kitterman.com (interserver.kitterman.com [IPv6:2604:a00:6:1039:225:90ff:feaa:b169]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0C437C14CF15 for <dmarc@ietf.org>; Tue, 19 Jul 2022 16:05:28 -0700 (PDT)
Received: from interserver.kitterman.com (interserver.kitterman.com [IPv6:2604:a00:6:1039:225:90ff:feaa:b169]) by interserver.kitterman.com (Postfix) with ESMTPS id D6D88F80311 for <dmarc@ietf.org>; Tue, 19 Jul 2022 19:05:27 -0400 (EDT)
DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903e; t=1658271927; h=from : to : subject : date : message-id : in-reply-to : references : mime-version : content-transfer-encoding : content-type : from; bh=isgVQwfCMRNsrbgc2ztu6oq21WtzhDj7RE+PNFVYxcQ=; b=DtEjSBgADilS+5tGk7IAwxuiknyJGYFk2SgJl7BNN81HJdmlKUsft/+/FbDXPkHQ+a1oC aVYL3stnbGIuCXZAw==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903r; t=1658271927; h=from : to : subject : date : message-id : in-reply-to : references : mime-version : content-transfer-encoding : content-type : from; bh=isgVQwfCMRNsrbgc2ztu6oq21WtzhDj7RE+PNFVYxcQ=; b=JQYTjAjvkm7GHBoMqYRpBgXhybAwBhBtSy4YKExyKmfz43GG1MhMVuH5btqwAJ5ieVZxz UbDBfSet0YddmIStU1fGCHI0Ycldo3ilFd0M8XuaSnPPg95skZiZuCArwFAdp2K+Xm4Hybc iSi4/UynX7sbkvHk13eozpKo5syTNPnz8wPzDBUX7ZrW1TFFSA+kuJeVlQYQN4pOwNzCgbl Fg8h0pyeWSEw9IAhJPUTTNzvh2G9PkiO4iHK2uyZUaXqtodwhsIzXty/HF2GrXz5WRKrHhq i0/Y8lkvLlUIw+lhdCGdbS54NLP8jijLxj79K0OZfkxGWkQwGJu3qr9PJUrg==
Received: from zini-1880.localnet (static-72-81-252-22.bltmmd.fios.verizon.net [72.81.252.22]) by interserver.kitterman.com (Postfix) with ESMTP id B8A50F801D6 for <dmarc@ietf.org>; Tue, 19 Jul 2022 19:05:27 -0400 (EDT)
From: Scott Kitterman <sklist@kitterman.com>
To: dmarc@ietf.org
Date: Tue, 19 Jul 2022 19:05:27 -0400
Message-ID: <4952014.Uy80PTftlD@zini-1880>
In-Reply-To: <ED978D2A-ADD1-4FFA-B101-239D333019CB@kitterman.com>
References: <20220626154211.6893F4452D0F@ary.qy> <be56e041-d588-c8e7-bd37-bf2858773b75@tana.it> <ED978D2A-ADD1-4FFA-B101-239D333019CB@kitterman.com>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/TiOOSmua2foekU0o_auL68X9sdM>
Subject: Re: [dmarc-ietf] Final, I hope, tweaks to the tree walk
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 19 Jul 2022 23:05:33 -0000

On Tuesday, June 28, 2022 12:46:18 PM EDT Scott Kitterman wrote:
...
> The operational distinction between a PSD and a non-PSD is that subdomains
> of a PSD are different organizations and subdomains of non-PSDs are part of
> the same organization.  I believe that's the correct distinction.

Looking back, I think this is a distinction worth adding to the draft as I 
think it will help provide clarity for future readers to resolve any 
ambiguities they find in the text correctly.

The PSD definition is probably overlong already:

> 3.2.8.  Public Suffix Domain (PSD)
> 
>    The global Internet Domain Name System (DNS) is documented in
>    numerous RFCs.  It defines a tree of names starting with root, ".",
>    immediately below which are Top-Level Domain names such as ".com" and
>    ".us".  The domain name structure consists of a tree of names, each
>    of which is made of a sequence of words ("labels") separated by
>    period characters.  The root of the tree is simply called ".".  The
>    Internet community at large, through processes and policies external
>    to this work, selects points in this tree at which to register domain
>    names "owned" by independent organizations.  Real-world examples of
>    these points are ".com", ".org", ".us", and ".gov.uk".  Names at
>    which such registrations occur are called "Public Suffix Domains
>    (PSDs)", and a registration consists of a label selected by the
>    registrant to which a desirable PSD is appended.  For example,
>    "ietf.org" is a registered domain name, and ".org" is its PSD.

My thought is to add text based on the above mail to the paragraph:

PSDs are important to DMARC because subdomains of a PSD are different 
organizations and subdomains of non-PSDs are part of the same organization.

Scott K