Re: [dmarc-ietf] About user notification in the MUA

"Douglas E. Foster" <fosterd@bayviewphysicians.com> Mon, 08 June 2020 06:03 UTC

Return-Path: <btv1==428e278cf9e==fosterd@bayviewphysicians.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E75A83A03F2 for <dmarc@ietfa.amsl.com>; Sun, 7 Jun 2020 23:03:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=bayviewphysicians.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8-agY-2hyTBg for <dmarc@ietfa.amsl.com>; Sun, 7 Jun 2020 23:03:32 -0700 (PDT)
Received: from mail.bayviewphysicians.com (mail.bayviewphysicians.com [216.54.111.133]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 495683A03EA for <dmarc@ietf.org>; Sun, 7 Jun 2020 23:03:32 -0700 (PDT)
X-ASG-Debug-ID: 1591596209-11fa313a1093910001-K2EkT1
Received: from webmail.bayviewphysicians.com (smartermail4.bayviewphysicians.com [192.168.1.49]) by mail.bayviewphysicians.com with ESMTP id CkKhoZFDGc9BoqAb (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NO) for <dmarc@ietf.org>; Mon, 08 Jun 2020 02:03:29 -0400 (EDT)
X-Barracuda-Envelope-From: fosterd@bayviewphysicians.com
X-Barracuda-RBL-Trusted-Forwarder: 192.168.1.49
X-SmarterMail-Authenticated-As: fosterd@bayviewphysicians.com
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bayviewphysicians.com; s=s1025; h=message-id:reply-to:subject:to:from; bh=OpGS5zfx1nsZg8CPiKZQb1OGJCd0gtBjyowOOY4PS/E=; b=KPbIM7MC8r9Oyzbl+UmuTyCbm/5m2EwvXFmnZEZqKuF4h17kZkTnsz7q9ES9lt3QF Knu5Aq/LnLFD/YsWFeNdURDWHzR2tnYaBHebSu7fpxH3xymy3w6taJJvQ6A2G5mno xF/Mo9Akq4jvpC7NXE+rBrEHahuz8Mde5b6lqOBsI=
From: "Douglas E. Foster" <fosterd@bayviewphysicians.com>
To: dmarc@ietf.org
Date: Mon, 08 Jun 2020 06:03:21 +0000
X-ASG-Orig-Subj: Re: [dmarc-ietf] About user notification in the MUA
Reply-To: fosterd@bayviewphysicians.com
Message-ID: <3eb519fc08214b4bb23ed00737cdc0db@bayviewphysicians.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="df7b6df385ad4544b558048ebbebf1ea"
In-Reply-To: <33b12416-cd41-4826-9950-3afc9fdb83bf@www.fastmail.com>
References: <DM5PR0601MB367115AD49513EAF3953716CF68B0@DM5PR0601MB3671.namprd06.prod.outlook.com> <11640715.3lbasgNmsr@sk-desktop> <25420528-d356-0273-ceb3-c44a3c94bc91@gmail.com> <3138524.EPDo7oxCqE@sk-desktop> <4620e21f-32c5-7735-9faf-a5b045f84c0d@bluepopcorn.net> <ac0f684a-4c00-0564-8cf9-5b955e037c87@tana.it> <14fe18acad53467a8027e680dfc1067e@bayviewphysicians.com> <46e045ae-9691-4f5b-86bf-142c066458d8@www.fastmail.com> <fbbcc299-98f3-5d23-15e1-1f89fa03b9a7@gmail.com> <dbcc34fb870e45b2b1cd3903b90b8a87@bayviewphysicians.com> <33b12416-cd41-4826-9950-3afc9fdb83bf@www.fastmail.com>
X-Exim-Id: 3eb519fc08214b4bb23ed00737cdc0db
X-Barracuda-Connect: smartermail4.bayviewphysicians.com[192.168.1.49]
X-Barracuda-Start-Time: 1591596209
X-Barracuda-Encrypted: ECDHE-RSA-AES256-SHA384
X-Barracuda-URL: https://mail.bayviewphysicians.com:443/cgi-mod/mark.cgi
X-Virus-Scanned: by bsmtpd at bayviewphysicians.com
X-Barracuda-Scan-Msg-Size: 3390
X-Barracuda-BRTS-Status: 1
X-Barracuda-Spam-Score: 0.00
X-Barracuda-Spam-Status: No, SCORE=0.00 using global scores of TAG_LEVEL=1000.0 QUARANTINE_LEVEL=1000.0 KILL_LEVEL=9.0 tests=HTML_MESSAGE
X-Barracuda-Spam-Report: Code version 3.2, rules version 3.2.3.82404 Rule breakdown below pts rule name description ---- ---------------------- -------------------------------------------------- 0.00 HTML_MESSAGE BODY: HTML included in message
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/ffmNwBJhPya3uHBM3Pcqh2xOjtg>
Subject: Re: [dmarc-ietf] About user notification in the MUA
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Jun 2020 06:04:39 -0000

Stan Kalisch asks:  And you propose the average user can understand, much less take the time to understand, the substance?

Yes.   I believe users are worried about spam, and want to make intelligent decisions about whether or not email can be trusted.  Unfortunately, our present software denies them access to the available information needed to make intelligent decisions.

Dave Crocker observes:       There is no basis for believing that requests about MUA display will achieve meaningful support on the receive side, nevermind whether they would be at all useful. 

I was not talking about the sender.   I was talking entirely about the receiving organization:    its spam filter communicating to its MUA to communicate information to the end user based on its local policy.

Dave Crocker also observes about end-user signaling failures:       It's not that it 'seems to be'. It isn't nearly that soft.  It is that there have been multiple efforts over the years and none has demonstrated efficacy.

    Then lets restate that assertion in all its ugly elitism, and put it into an RFC:
   
Incontrovertible research shows that humans will always act on malicious email, and cannot be taught to do otherwise.   Organizations should deploy email if and only if they have automated tools which provide perfect protection from unwanted email.     End user training is useless.

I have a higher opinion about my users than that.