Re: [dmarc-ietf] Call for Adoption: DMARC Use of the RFC5322.Sender Header Field

"Rolf E. Sonneveld" <R.E.Sonneveld@sonnection.nl> Mon, 17 August 2020 18:26 UTC

Return-Path: <R.E.Sonneveld@sonnection.nl>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 89DBF3A1548 for <dmarc@ietfa.amsl.com>; Mon, 17 Aug 2020 11:26:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.095
X-Spam-Level:
X-Spam-Status: No, score=-2.095 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, MIME_QP_LONG_LINE=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=sonnection.nl
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IFb7usqW8KtL for <dmarc@ietfa.amsl.com>; Mon, 17 Aug 2020 11:26:23 -0700 (PDT)
Received: from mx10.mailtransaction.com (mx10.mailtransaction.com [88.198.59.241]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2E9B93A146C for <dmarc@ietf.org>; Mon, 17 Aug 2020 11:26:22 -0700 (PDT)
Received: from mx14.mailtransaction.com (mx11.mailtransaction.com [88.198.59.230]) by mx10.mailtransaction.com (Postfix) with ESMTP id 4BVjDD3Zthz2qF17; Mon, 17 Aug 2020 20:26:20 +0200 (CEST)
DKIM-Filter: OpenDKIM Filter v2.10.3 mx10.mailtransaction.com 4BVjDD3Zthz2qF17
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=sonnection.nl; s=2009; t=1597688780; bh=tMRzmHw6sh81QRYToWnTdbua0ocftbvJ+l1PT2YxHEU=; h=Subject:From:Date:Message-Id:To:From; b=P6A0IC8MeNVuOxEGInFurhTGn/1YuIO/vvz5dHqTGO6qfvBsz/hbowja4/dDLB9CI IjF1Z9+a3MhZk1yakIp5j1/T4/ffixx7YKRWhl/z//rVFALIy9cyXnI21TaG0TflKh x0n4qpvsNDSJv054Lf3x8s2KqgTu4Ufwap9WF4T4=
Received: from tiger.sonnection.nl (D57E1706.static.ziggozakelijk.nl [213.126.23.6]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx14.mailtransaction.com (Postfix) with ESMTPS id 4BVjDC3cHNz2qF15; Mon, 17 Aug 2020 20:26:19 +0200 (CEST)
Received: from localhost (localhost [127.0.0.1]) by tiger.sonnection.nl (Postfix) with ESMTP id 305A14223A3; Mon, 17 Aug 2020 20:26:19 +0200 (CEST)
X-Virus-Scanned: amavisd-new at tiger.sonnection.nl
Received: from tiger.sonnection.nl ([127.0.0.1]) by localhost (tiger.sonnection.nl [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id DQZaNjjFzShK; Mon, 17 Aug 2020 20:26:19 +0200 (CEST)
Received: from [192.168.178.86] (a82-161-205-136.adsl.xs4all.nl [82.161.205.136]) by tiger.sonnection.nl (Postfix) with ESMTPSA id EE4254223A2; Mon, 17 Aug 2020 20:26:18 +0200 (CEST)
Content-Type: multipart/alternative; boundary="Apple-Mail-274AD373-7A3E-4701-A72E-F67F598C9C8C"
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0 (1.0)
From: "Rolf E. Sonneveld" <R.E.Sonneveld@sonnection.nl>
In-Reply-To: <CAJ4XoYeVYQcBrdDdZbrNgzfzBXDBy6kqa8f_xtGrqkuJMn3Sqw@mail.gmail.com>
Cc: Dave CROCKER <dcrocker@bbiw.net>, IETF DMARC WG <dmarc@ietf.org>
Date: Mon, 17 Aug 2020 20:26:17 +0200
Message-Id: <FB35BF32-370A-4D0B-84F1-82D2319AEEBB@sonnection.nl>
References: <CAJ4XoYeVYQcBrdDdZbrNgzfzBXDBy6kqa8f_xtGrqkuJMn3Sqw@mail.gmail.com>
To: Dotzero <dotzero@gmail.com>
X-Mailer: iPad Mail (17F80)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/TvVfIofOv3_-b2FEYg_h995hj4A>
Subject: Re: [dmarc-ietf] Call for Adoption: DMARC Use of the RFC5322.Sender Header Field
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 17 Aug 2020 18:26:27 -0000

>> On 17 Aug 2020, at 16:47, Dotzero <dotzero@gmail.com> wrote:
> 
> 
> 
>>> On Mon, Aug 17, 2020 at 10:37 AM Dave Crocker <dhc@dcrocker.net> wrote:
>>>>> On 8/17/2020 7:33 AM, Dotzero wrote:
>>>> DMARC fixes one thing and one thing only, direct domain abuse.
>>> 
>>> It does no such thing.  Domains can still be 'directly' abused in all sorts of ways that DMARC does not affect.  
>>> 
>> 
>> Mea Culpa. You are correct that it only does so in the context of SPF and DKIM validation which protects rfc5322 From field domains and aligned rfc5321 Mail From domains (SPF).
>> <rant>
>> 
>> A continuing and in my view fundamental problem with discussion in this space is the lack of careful and precise language when talking about actions and effects.
>> 
>> </rant>
>> 
>> So...
>> 
>> DMARC fixes abuse of rfc5322.From field domains.  
>> 
>> THAT is the only thing it does.
>> 
> See above.. I was even more specific than you were in terms of what DMARC does. 
>> And it does it at the expense of breaking some legitimate uses.
>> 
> Only when it is used in domains where there are individual user accounts and not (only) transactional mail uses. If I use a hammer (no pun intended) to pound in a screw, it doesn't make it the right tool for the job.
> 
> Michael Hammer (Inaccurately referred to by you as Herr Hammer)

Talking about precise language, Dave, I think you owe Michael an apology ;-)

/rolf