[dmarc-ietf] OT: Yet another addition to dmarc-rfc7601bis-00

Alessandro Vesely <vesely@tana.it> Sun, 18 March 2018 11:25 UTC

Return-Path: <vesely@tana.it>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E8763124B17 for <dmarc@ietfa.amsl.com>; Sun, 18 Mar 2018 04:25:08 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.311
X-Spam-Level:
X-Spam-Status: No, score=-4.311 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=tana.it
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UnMiMPjbfENI for <dmarc@ietfa.amsl.com>; Sun, 18 Mar 2018 04:25:07 -0700 (PDT)
Received: from wmail.tana.it (wmail.tana.it [62.94.243.226]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0DF3F1243FE for <dmarc@ietf.org>; Sun, 18 Mar 2018 04:25:06 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=tana.it; s=beta; t=1521372305; bh=DrvJysQZYEmoqGWauuPY9/t3GQ3q8S8Ioi0hNyJnM5k=; l=1082; h=To:From:Date; b=eZoXAwqfJsxOLNahVrSkHBMAdD0029OzuvnV4aHzWNFzjxw3ZxASIOR/ZsfTZXdM5 suDEiHBX6uXsi4YSkZXDheQGNr9Eg1Pyh0niwf2J2SJq/Ch8wTBADBVkaqTb3zFTTk 8UKp48EDBGPysRrhU+pdwfEka/2Ml9BAx3BgaQqk=
Authentication-Results: tana.it; auth=pass (details omitted)
Received: from [172.25.197.111] (pcale.tana [172.25.197.111]) (AUTH: CRAM-MD5 uXDGrn@SYT0/k) by wmail.tana.it with ESMTPA; Sun, 18 Mar 2018 12:25:05 +0100 id 00000000005DC056.000000005AAE4C91.00005C44
To: dmarc@ietf.org
From: Alessandro Vesely <vesely@tana.it>
Openpgp: id=0A5B4BB141A53F7F55FC8CBCB6ACF44490D17C00
Message-ID: <98102864-2dee-c133-f625-7b66976f7519@tana.it>
Date: Sun, 18 Mar 2018 12:25:05 +0100
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.6.0
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Language: en-US
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/oiWciDnVDMt8wnUDxM-ULks6Ztk>
Subject: [dmarc-ietf] OT: Yet another addition to dmarc-rfc7601bis-00
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 18 Mar 2018 11:25:09 -0000

Would it be possible to insert a dnswl method in the new spec?

Last time I asked for its insertion, (via expert opinion) it was rejected based
on the definition of ptype, according to which The exception to ptype +
property indicating which particular part of the message from which the data is
extracted is policy.[*]  Instead, dnswl method[**] provides for a ptype of
"dns".  For a live example:

    Authentication-Results: wmail.tana.it;
        dnswl=pass dns.zone=list.dnswl.org
        policy.ip=127.0.9.2
        policy.txt="ietf.org https://dnswl.org/s/?s=1703"

Adding that method in the main spec would certainly result in a better
visibility, which is why I'm asking.  It is a very easy method for those many
servers that put no authentication at all on the messages they relay.

Besides, that ptype could also be used to define DKIM algorithm as, say, dns.a
or dns.key-a instead of header.a --just an idea.

Best
Ale

[*] https://mailarchive.ietf.org/arch/msg/apps-discuss/zoMqTkkSkAXiwFTnFGWgXIaXy0c
[**] https://datatracker.ietf.org/doc/draft-vesely-authmethod-dnswl/