Re: [dmarc-ietf] [Gen-art] [Last-Call] Genart last call review of draft-ietf-dmarc-psd-08

"Murray S. Kucherawy" <superuser@gmail.com> Sat, 23 January 2021 01:33 UTC

Return-Path: <superuser@gmail.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2B2E63A1622 for <dmarc@ietfa.amsl.com>; Fri, 22 Jan 2021 17:33:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mp3OFhnTlvkf for <dmarc@ietfa.amsl.com>; Fri, 22 Jan 2021 17:33:25 -0800 (PST)
Received: from mail-vs1-xe2d.google.com (mail-vs1-xe2d.google.com [IPv6:2607:f8b0:4864:20::e2d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A82B93A1621 for <dmarc@ietf.org>; Fri, 22 Jan 2021 17:33:25 -0800 (PST)
Received: by mail-vs1-xe2d.google.com with SMTP id n18so4062652vsa.12 for <dmarc@ietf.org>; Fri, 22 Jan 2021 17:33:25 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=ha7PNFjq0fBArZ8gK6EihWzSlCkJz+OB9DFCBC60Vsw=; b=OLTXnvN1PayuDGLopG2OpRNOvfDSWPqIbj/ajklI7FmVwPT7nncDBcebJ82pYbdy3N nnOtXBKvuMF7FQjiMgLXE4RSTYPAFoOopkTCUmgw4jbWbToVUJPZLcxeRf8J5O5j9VD8 fOlXlrOi88tSiD+An5XJLA71arJkTJvIdYsYRPM8eC/61nZyqkV6CNYUlRufjJp5F+F1 zIpMqD++uFM1qJe+CIywyqW1LAK9bEjkjoaKHLEnw0mxrudN3qv6aTx/4hTPeBYVYwpU VEgXnqNnXJTISOxN0RoK+I2vNkcc+Az8waJaI8ZJIxI8sGctFkIRGFujsZA4vMO/yXaD JMXw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=ha7PNFjq0fBArZ8gK6EihWzSlCkJz+OB9DFCBC60Vsw=; b=I8Z1jTNbN+vvXS8yw8V3mI4OxQxDhxoOU7gOx71BYxwEDzhBwrvGh16+9eAYM/5IAr RCDmj68Tr7bprAwqp9GgF1dnzKLQJ24Roju2V7A16fNbfS6IFY/pFAOGyaIPXhv68zBf wR9iRQ9cif08wA9wKJei5eKHVhxOOF4ciVAIxTFcWkHoReXuNJb1qPhcttdvOFU4i7a8 9ny1mctaMrqbXQL4AAjz9DI8pvlKxjqpMu38r89zf7A/6bWH9Na26nPC3k68tdszboDw fYlVEyOZT1sK+pCcWDs+k/8265Dnxm1nxoGVjNvqDthu+TjOKhuIg3bOD/78w0KYnvOO 2wVg==
X-Gm-Message-State: AOAM533PxuLl6Pbl+NxOoOdIcSCQVm9t6NTZsvrES8NFNu9eLf3QqWA+ XwH+ZGlbceDwJawxsyEkoX9TT/kta6hlDAL+RNU=
X-Google-Smtp-Source: ABdhPJx3h7jqQzTpABBS5Q4815KJ7eI4DjYJHUjMZu+UnZ810qXwM1cYa3vmBgB8QdnOb45eS4CCEPRUvI9jEZeKyWU=
X-Received: by 2002:a05:6102:808:: with SMTP id g8mr277373vsb.0.1611365604689; Fri, 22 Jan 2021 17:33:24 -0800 (PST)
MIME-Version: 1.0
References: <CADyWQ+Fb93SkiAnL4cuCfxC5Wi1ERLeKhguWqAp3j8YEa6JBSA@mail.gmail.com> <87ima4wu3s.fsf@hobgoblin.ariadne.com> <CAL0qLwbiOrgsEjZU_V6W8e42SRNoUh7CzyngRMR5RLeQpzrxaQ@mail.gmail.com> <44eec884-a3c7-f0e3-4545-1032369ad3fd@tana.it> <CAL0qLwavpE9r6+O+Dm5EyDYzP9_pTpTbbjMzL1mPTyJky5CKmA@mail.gmail.com> <CADyWQ+Hn5G_WSHjrD3gLL5HwZxDGoV_wxgAuiPc_sutQ4OYhNg@mail.gmail.com> <CABuGu1oxkNUB_E8Q5do5xCruxXGvqY2461u0ZMZ1J5BFE8dTqg@mail.gmail.com> <CAL0qLwb9RUBTTfwNNLn+do1iNE-A1Ke-NcW+SidqhJqd3BdPig@mail.gmail.com> <CABuGu1qLPkVQFDxUKXsgzqoK4Qcd7Rn5Q4bOed_4WkVv-FuB7w@mail.gmail.com>
In-Reply-To: <CABuGu1qLPkVQFDxUKXsgzqoK4Qcd7Rn5Q4bOed_4WkVv-FuB7w@mail.gmail.com>
From: "Murray S. Kucherawy" <superuser@gmail.com>
Date: Fri, 22 Jan 2021 17:33:13 -0800
Message-ID: <CAL0qLwZseBvzGWihW20RZpTJeQde9WfxtPhze9dNAiGuLtGYYA@mail.gmail.com>
To: "Kurt Andersen (b)" <kboth@drkurt.com>
Cc: Tim Wicinski <tjw.ietf@gmail.com>, IETF DMARC WG <dmarc@ietf.org>, Alessandro Vesely <vesely@tana.it>
Content-Type: multipart/alternative; boundary="000000000000788df305b9874a8f"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/_ZpIkVke3SIO3FUzIPS6QEfhdw8>
Subject: Re: [dmarc-ietf] [Gen-art] [Last-Call] Genart last call review of draft-ietf-dmarc-psd-08
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 23 Jan 2021 01:33:27 -0000

On Fri, Jan 22, 2021 at 4:58 PM Kurt Andersen (b) <kboth@drkurt.com> wrote:

> On Fri, Jan 22, 2021 at 4:57 PM Murray S. Kucherawy <superuser@gmail.com>
> wrote:
>
>> On Fri, Jan 22, 2021 at 4:55 PM Kurt Andersen (b) <kboth@drkurt.com>
>> wrote:
>>
>>> On Fri, Jan 22, 2021 at 3:06 PM Tim Wicinski <tjw.ietf@gmail.com> wrote:
>>>
>>>>
>>>> Here's the paragraph in question
>>>>
>>>>      <t>To determine the organizational domain for a message under
>>>> evaluation,
>>>>         and thus where to look for a policy statement, DMARC makes use
>>>> of a Public Suffix
>>>>         List. The process for doing this can be found in Section 3.2 of
>>>> the DMARC
>>>>         specification.</t>
>>>>
>>>
>>> The concern that I have with this wording is that it is (potentially)
>>> misleading. "How" DMARC determines the org domain does not matter at all to
>>> this spec. The important point is that we go to "org-1" in the tree for
>>> this extra lookup.
>>>
>>
>> This is just establishing context for why we're doing what the rest of
>> the document says (i.e., what problem we're solving).  Leaving this out
>> seems to me to paint an incomplete picture; Section 3 basically describes a
>> delta, but a delta to what?
>>
>
> And if DMARC changes how it determines the org domain, where does that
> leave this spec?
>

Do we need more than the reference(s) to RFC 7489?

-MSK