Re: [dmarc-ietf] Reversing modifications from mailing lists

Scott Kitterman <sklist@kitterman.com> Tue, 30 November 2021 19:05 UTC

Return-Path: <sklist@kitterman.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 81FE83A14C8 for <dmarc@ietfa.amsl.com>; Tue, 30 Nov 2021 11:05:08 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (unsupported algorithm ed25519-sha256)" header.d=kitterman.com header.b=qSrjRspX; dkim=pass (2048-bit key) header.d=kitterman.com header.b=OAWBFbmM
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gMr4Zg_6AIDc for <dmarc@ietfa.amsl.com>; Tue, 30 Nov 2021 11:05:02 -0800 (PST)
Received: from interserver.kitterman.com (interserver.kitterman.com [64.20.48.66]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DC2F53A14C5 for <dmarc@ietf.org>; Tue, 30 Nov 2021 11:05:02 -0800 (PST)
Received: from interserver.kitterman.com (interserver.kitterman.com [IPv6:2604:a00:6:1039:225:90ff:feaa:b169]) by interserver.kitterman.com (Postfix) with ESMTPS id 47F8CF80298; Tue, 30 Nov 2021 14:05:01 -0500 (EST)
DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903e; t=1638299101; h=date : from : to : subject : in-reply-to : references : message-id : mime-version : content-type : content-transfer-encoding : from; bh=aJ5a53CJDGqbkLPXEUWjfkhEkA8yaz+dYV9N22x50Yk=; b=qSrjRspXSYSRxNZvmEeSe55cpzCxl1PNC/nfAD71zLd1AjWmrTNnkbv9VcD+PdfEuyjrL yfZ6xGiftNFfLfkAA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903r; t=1638299101; h=date : from : to : subject : in-reply-to : references : message-id : mime-version : content-type : content-transfer-encoding : from; bh=aJ5a53CJDGqbkLPXEUWjfkhEkA8yaz+dYV9N22x50Yk=; b=OAWBFbmMx3hs6qgFIAYaW0rNE06r4cfLbgyc2aotxrrp3tGyxYz6/mzHr3AoIi1jKQ5pi ADsym/TU+p80Dk3i/gQSg1fFwe0HOX4aCWbKAY89/k763v9zPRKo0rE3pJj0v9zevDDE4yr eK2GPev9AMzs3UXZtvR4imKZAtwpht8LLcwKreEqNb6jccEi/OqNWEBXmW5/6w+Y0eHnRYg HscO3WeC+JIiEfOqXNTidQT6PRFlCrIw+Vg26LMElKcbIDDofQi1tFbsypTjp8K965aMdOc LDfFaAiyZbHkdItV+wuj4mfSdz/mZbvfVPnZeRY/hevjEaQzNjK36VUiTasA==
Received: from [127.0.0.1] (mobile-166-171-57-131.mycingular.net [166.171.57.131]) by interserver.kitterman.com (Postfix) with ESMTPSA id CEEE0F801E8; Tue, 30 Nov 2021 14:05:00 -0500 (EST)
Date: Tue, 30 Nov 2021 19:04:59 +0000
From: Scott Kitterman <sklist@kitterman.com>
To: dmarc@ietf.org
In-Reply-To: <b2b240b0-a658-b852-fe22-6902de577745@taugh.com>
References: <20211129030358.BC1EA30B80A5@ary.qy> <0e941529-1c93-b84d-ae7f-01c505a52c60@tana.it> <d6116d53-b415-f4d1-67e6-3a765f83754d@taugh.com> <4eb213fc-c269-3d62-36dd-50fd39efb368@tana.it> <CAAFsWK2BLP8+GOVzdDtn_PsyAGaKwt0Y3F_hQWkdTHdC6RhD=A@mail.gmail.com> <b2b240b0-a658-b852-fe22-6902de577745@taugh.com>
Message-ID: <A1A5C7A3-26E1-4E06-8CDD-4DBF13CF924E@kitterman.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/r1910Fe285ZYcnLspV-Zv2sewx4>
Subject: Re: [dmarc-ietf] Reversing modifications from mailing lists
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 Nov 2021 19:05:09 -0000


On November 30, 2021 5:30:39 PM UTC, John R Levine <johnl@taugh.com> wrote:
>On Tue, 30 Nov 2021, Wei Chuang wrote:
>> What about adding a footer to some html mime part is poorly handled when
>> using "l="?  Multipart bodies could be handled by other techniques.
>
>See section 8.2 in the DKIM spec which says if you use l= you need to be 
>careful with your MIME boundaries so naughty people can't add another part 
>that overlays the real message.
>
>I have seen lists that edit the footer into the HTML of the body, I think 
>at Yahoo groups.  Don't see how you're going to describe that in a 
>reversible way.

Or, we could stop trying to design a DKIM replacement and work on DMARC.

Scott K