Re: [dmarc-ietf] Ticket #55, closing

John Levine <johnl@taugh.com> Mon, 25 January 2021 18:02 UTC

Return-Path: <johnl@iecc.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A96923A1C68 for <dmarc@ietfa.amsl.com>; Mon, 25 Jan 2021 10:02:35 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.049
X-Spam-Level:
X-Spam-Status: No, score=0.049 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.249, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=iecc.com header.b=KyxIaIwB; dkim=pass (2048-bit key) header.d=taugh.com header.b=GmZaAGl0
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id umKwis4mK7vI for <dmarc@ietfa.amsl.com>; Mon, 25 Jan 2021 10:02:33 -0800 (PST)
Received: from gal.iecc.com (gal.iecc.com [IPv6:2001:470:1f07:1126:0:43:6f73:7461]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AA32F3A1928 for <dmarc@ietf.org>; Mon, 25 Jan 2021 10:01:30 -0800 (PST)
Received: (qmail 68857 invoked from network); 25 Jan 2021 18:01:29 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:cleverness; s=10cf7.600f0779.k2101; bh=hUFpvu0xUE63joJ3ugTHzOJm85CSB0Iz6fzklwOny6A=; b=KyxIaIwBE3hio1PgiP313lFTcSTwLu775PYdoUcZFtwJyhG+hDiyAjjE/MTDE8vWjdiBdGdKyGBEUMERjQ9GqbcIMOoLap5a8HhX3fcndU72oeM5AAC8tmW0/iRGCsb88CmcQI41NiLBpIJ834Ak09jWCpOfkXkutiTwzOacLLAEH2Iu9JzXKmFqB4HcXoo3wi4KsgqP/w/hrif7zV6o3shC8m2E6vtqZI1oOSTmqwME9LXdcpUsSR+EURHnpv9oMxz4gEv8IH/p5K0dC5qNjE+Hk/MeeIW/HyqdkQEROSp4Rv4BTPLHVBzwNeWvjbXByyHY9byuZzSxukwzFHsUYQ==
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:cleverness; s=10cf7.600f0779.k2101; bh=hUFpvu0xUE63joJ3ugTHzOJm85CSB0Iz6fzklwOny6A=; b=GmZaAGl05AWf5ieQJTSFNm/ScA/XQhgQecCdK5HUSX5RefLkQ5JwFOWmJt+6hnxrx2/wNGDendtA8327VlVQVu/8HCjX395DqSTxs0OWRbn/UPvChXCx0cG3ViWJDyloYlAupFvAeZY0LkQWqm6/lIEfOZHRcpDTyozBSzBGAINLFAgFfJ5nAS8KnmfX+IJ/BurT/a9pv3RcLm+XstsEBK16u8piWGO/aVuF6jFffnNURre8UoZJKTV0SExpL/SG3MJi/TzvtV+3ITYGiIekmna5++6dJziUprkQBo95n0ps8gJBahMQohEBApZ+8J4ks5w8k8yxx+J6smfqv/fvYw==
Received: from ary.qy ([IPv6:2001:470:1f07:1126::78:696d:6170]) by imap.iecc.com ([IPv6:2001:470:1f07:1126::78:696d:6170]) with ESMTPS (TLS1.2 ECDHE-RSA AES-256-GCM AEAD) via TCP6; 25 Jan 2021 18:01:29 -0000
Received: by ary.qy (Postfix, from userid 501) id D48E86C13032; Mon, 25 Jan 2021 13:01:28 -0500 (EST)
Date: Mon, 25 Jan 2021 13:01:28 -0500
Message-Id: <20210125180128.D48E86C13032@ary.qy>
From: John Levine <johnl@taugh.com>
To: dmarc@ietf.org
Cc: vesely@tana.it
In-Reply-To: <63451726-124b-c24f-3be1-d6435e12c22e@tana.it>
Organization: Taughannock Networks
X-Headerized: yes
Cleverness: minimal
Mime-Version: 1.0
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/jVhyFtDUrfE_LMhKAQ3j4Vs4mjE>
Subject: Re: [dmarc-ietf] Ticket #55, closing
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Jan 2021 18:02:40 -0000

In article <63451726-124b-c24f-3be1-d6435e12c22e@tana.it> you write:
>OLDER:
>    These reports SHOULD include the "call-to-action" URI(s) from inside
>    messages that failed to authenticate.

Well, you can guess where that came from.

>NEW:
>    These reports SHOULD include as much of the message and message header
>    as is reasonable to support the Domain Owner's investigation into what
>    caused the message to fail authentication and track down the sender,
>    unless privacy reasons suggest otherwise.

I'd strip it down more.

 These reports should include as much of the message header and body as
 possible, consistent with the reporting party's privacy policies, to
 enable the Domain Owner to diagnose the authentication failure.

The "should" is deliberately lower case since it's not something you can
describe mechanically.

R's,
John