Re: [dmarc-ietf] Header Rewriting

Douglas Foster <dougfoster.emailstandards@gmail.com> Wed, 06 January 2021 22:57 UTC

Return-Path: <dougfoster.emailstandards@gmail.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 039FF3A1353 for <dmarc@ietfa.amsl.com>; Wed, 6 Jan 2021 14:57:26 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gvX8nMrH8Wqq for <dmarc@ietfa.amsl.com>; Wed, 6 Jan 2021 14:57:24 -0800 (PST)
Received: from mail-vs1-xe2e.google.com (mail-vs1-xe2e.google.com [IPv6:2607:f8b0:4864:20::e2e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 604403A1352 for <dmarc@ietf.org>; Wed, 6 Jan 2021 14:57:24 -0800 (PST)
Received: by mail-vs1-xe2e.google.com with SMTP id h6so2664434vsr.6 for <dmarc@ietf.org>; Wed, 06 Jan 2021 14:57:24 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=faMNO2Ox/TNXuHbsVkAbApj03jD2+/jshJyFkAElAEg=; b=BGYLONga0inDYULOrDyQgzUDA8QDR0CJu1A6rSrRAD9BGse5Jay0uZJIDS5Wo1zYsI h34tQWH3c5yXgNkYimyjDOVyLc65fu9lHJDl45siN8ZIj70QoubUe4b1e+XefDNXYS+o tcGTinqIVo0OpW3rBvlPgAW4X+R9hlFvZg/HlFiANw/gViP7OxHMf0CTmyXXv9j3pOdD 87ZpHPi1X3RDQW8z7T+dcZmkrgdVNkB9Uwhu504SbiVQZJ4hhuahQi5JSmQNqMPAsr+k l/bAy7Eez6G42QtkUqqdSXosktPQh2lgieBotaMEaJ5o/5ttTXE16wo1r2d3gwVSlvTP XNBA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=faMNO2Ox/TNXuHbsVkAbApj03jD2+/jshJyFkAElAEg=; b=c7rqf1892XSqWDTqadPnYnLNp9STYRRfo4LOjEPcZUplbjDSSKjV9KkIGJjOCNQh1a NkyzmtThokfp0W6B5/AjdltDIbi+mUde3xm1+aPmzAMWZlSJggRMmR661Ioez4mPMpsr Cuh31gcKFvqxxKzbNOgnQA1YqB1gevDkQS4JYVFTwLUmgBvd9NIM1SVGS+PjgeG8M5a+ Hj98UYTQ3R4kTaAsPpAVUCfuGVmvyAkv8weUEc54ZmL49EHr3/WgsK4Ukmm2in1PawLs ofHy0NtVZKOhZbQdCVIIH7CcWPmPFsw1OhHR9MRM9xUoap765wN3NEiMAe65tbDDp0Qp gYog==
X-Gm-Message-State: AOAM531gozbVWki0TC+q/Vb+ZB2dYdhTAj1uwZBDm74XQ9JQpQ7Ib0Dx 1UhL0XMcEKbjkobbHf8s271Qge5TxjJZAMAHLWxlB78E
X-Google-Smtp-Source: ABdhPJxd3fGFZKXSMm/XtvEsVYLt+aP/biDLAPsnPC0pRWbz3mkx+DdZfG+W7gGeQgFJcoXX8k1odqoLu3MprZ5I/HI=
X-Received: by 2002:a67:d083:: with SMTP id s3mr4912490vsi.25.1609973843346; Wed, 06 Jan 2021 14:57:23 -0800 (PST)
MIME-Version: 1.0
References: <D3A51087-6E1A-465F-89CD-63172E8075D4@wordtothewise.com> <20210106191127.290BC5D043E4@ary.qy>
In-Reply-To: <20210106191127.290BC5D043E4@ary.qy>
From: Douglas Foster <dougfoster.emailstandards@gmail.com>
Date: Wed, 06 Jan 2021 17:57:13 -0500
Message-ID: <CAH48ZfwUXbNuQsi1Z3S3YyegdANuqfRM-byO7tScB3prG6sU8g@mail.gmail.com>
To: John Levine <johnl@taugh.com>
Cc: IETF DMARC WG <dmarc@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000007c85a05b8433f83"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/fBQ0u-nPW9ivHWD7Xva6sd-KpjI>
Subject: Re: [dmarc-ietf] Header Rewriting
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 06 Jan 2021 22:57:26 -0000

I don't know how ESPs and From Rewrite ended up in the same sentence.  ESPs
do not need From rewrite because they can do DKIM signing.    The
incentives are all against them using or allowing From rewrite.

Taking business from criminal clients does not include allowing one client
to impersonate another client or a non-client.   Such behavior would hurt
the revenue of the ESP.


On Wed, Jan 6, 2021 at 2:12 PM John Levine <johnl@taugh.com> wrote:

> In article <D3A51087-6E1A-465F-89CD-63172E8075D4@wordtothewise.com> you
> write:
> >The header rewriting being proposed - that is header rewriting by the ESP
> so that the messages that
> >go through their system are rewritten to point to the ESP and not the
> author of the message - means
> >that the identity assertion is disconnected from the context of a message.
> >
> >Want to know what mail goes through ESPs? Bank mail, social media mail,
> marketing mail. Billions of
> >emails a day go through ESPs that you have and have not heard of.
>
> It's even worse than that. Some ESPs are not very good at managing
> their customers. Sendgrid, one of the larger ESPs, sends me a stream
> of bank phishes, fake vaccine offers and (for symmetry I suppose)
> antivax kookery mixed in with the legit bulk mail and some receipts
> for real transactions. They do not have a good reputation and a great
> deal of the mail they send goes straight to the junk folder where it
> belongs.
>
> Header rewriting is not any sort of solution to the problems that DMARC
> creates.
>
> R's,
> John
>
> _______________________________________________
> dmarc mailing list
> dmarc@ietf.org
> https://www.ietf.org/mailman/listinfo/dmarc
>