Re: [dmarc-ietf] Nonexistent Domain Policy was: Re: Working Group Last Call: draft-ietf-dmarc-psd

Richard C <Richard.C@ncsc.gov.uk> Tue, 16 July 2019 08:20 UTC

Return-Path: <Richard.C@ncsc.gov.uk>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0F99E120182 for <dmarc@ietfa.amsl.com>; Tue, 16 Jul 2019 01:20:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.002
X-Spam-Level:
X-Spam-Status: No, score=-2.002 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ncsc.gov.uk
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bIoz3EsmsreR for <dmarc@ietfa.amsl.com>; Tue, 16 Jul 2019 01:20:14 -0700 (PDT)
Received: from GBR01-LO2-obe.outbound.protection.outlook.com (mail-eopbgr100119.outbound.protection.outlook.com [40.107.10.119]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A69FB120086 for <dmarc@ietf.org>; Tue, 16 Jul 2019 01:20:14 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ZcCz0DrntzR9W/1Ma0EFagLWo7cvplYd+eqLVFGbJceXk+Xgat21xUZ7imQCGCveQaXhDUxnQpHWv8yhZM4U/j+X6oxSmnUwTv0vwIcLBIkUHiREu4pBh0zaaeoKVvGPr+jWLZ2sBDtGqJgzP14TFNRfHLwkWt+3hZ3CYaw4MwSut67ApfItewknUFbNoMp3PqTsqTlfAIrPKp+6X8RzUHYhRn4bgo/HzW1kpJzRsiE7S6suyI1lYuc3VOaBl9VxdWgq+aM7498enNH6r1zDCh1qO3h310RNu5NbTcGGTW1uUQzu24WN1HXzpBa+Fvyq3irolG/cVPl85fRJB9TrNA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=vaKIbAQ6yVSKztdkW3GF1rH0vw9AdWjTWaHsDTK+mYw=; b=QlUoUZJJppkadyujNT19RliS9pEEPXi8X6z0CHvdyvdGweE1Noi5kfhqDmIN23iZ7mumQgJB2LnNH44xZTPGdYB5i9vElifH2iD9D9atz8jePuFcmwtKpjqUaFHGXPibXLv8uUUN2v2tA4bZH39UfJmyH8HpzP5AJzutdTGmsyFwLAAcwl0E0fNBMpAUWlZXKhUDusYMTI3JmDmyhbZC1fQDwPGQh2MRW1Yc57V1loQ9WskV/22e8F2lf4BK9u3GMTep4AocM3agw04jX1l4477sMNsKDEM3tZd313StuD2GSGd2GSIV0a5Om3Sa/Ae6T8NhvtMgKLGg+y7kcEtiIQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1;spf=pass smtp.mailfrom=ncsc.gov.uk;dmarc=pass action=none header.from=ncsc.gov.uk;dkim=pass header.d=ncsc.gov.uk;arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ncsc.gov.uk; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=vaKIbAQ6yVSKztdkW3GF1rH0vw9AdWjTWaHsDTK+mYw=; b=DnC8A4In8zKWnU1Vk/FuvUwedXIDBdsdCcKtvjDVQQN4rMMxCAYN3eLaIKC+twIj+aYX3so4I+v2kInw+YmbPNQedFwfLmjd4kWIwJ2+4GuNV5Pp/wDM1sQg4+j+rDC7C58RcelK7CRwYabsSj2vaIG/Sp2EbxfZj/EuseQwj2Q=
Received: from LO2P123MB2334.GBRP123.PROD.OUTLOOK.COM (20.176.156.23) by LO2P123MB2480.GBRP123.PROD.OUTLOOK.COM (20.176.154.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2073.14; Tue, 16 Jul 2019 08:20:12 +0000
Received: from LO2P123MB2334.GBRP123.PROD.OUTLOOK.COM ([fe80::ac27:d82f:6587:ed57]) by LO2P123MB2334.GBRP123.PROD.OUTLOOK.COM ([fe80::ac27:d82f:6587:ed57%4]) with mapi id 15.20.2073.012; Tue, 16 Jul 2019 08:20:12 +0000
From: Richard C <Richard.C@ncsc.gov.uk>
To: "dmarc@ietf.org" <dmarc@ietf.org>
Thread-Topic: [dmarc-ietf] Nonexistent Domain Policy was: Re: Working Group Last Call: draft-ietf-dmarc-psd
Thread-Index: AQHVONo/C1M9vqX+30Cy04bGzMOWd6bHRCGAgAAJaoCAAaTUgIAD+axA
Date: Tue, 16 Jul 2019 08:20:12 +0000
Message-ID: <LO2P123MB2334D79A532D6A6514C00BA1ADCE0@LO2P123MB2334.GBRP123.PROD.OUTLOOK.COM>
References: <CAL0qLwbbz_UhBLsURg=eXhRBC2g9OghiN==T9Uq9pFuLtd=b7w@mail.gmail.com> <CABuGu1rCF1C1rK9PpbEiDmP+85FvgB_aSuvieGL=hRcrFGXNBg@mail.gmail.com> <1958020.28HeBAo97T@l5580> <4789054.Ip9ilXyiH0@l5580>
In-Reply-To: <4789054.Ip9ilXyiH0@l5580>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Richard.C@ncsc.gov.uk;
x-originating-ip: [51.141.26.231]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 33ce1bff-5e97-4072-246d-08d709c66c8c
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(7168020)(4627221)(201703031133081)(201702281549075)(8990200)(5600148)(711020)(4605104)(1401327)(2017052603328)(7193020); SRVR:LO2P123MB2480;
x-ms-traffictypediagnostic: LO2P123MB2480:
x-microsoft-antispam-prvs: <LO2P123MB2480AA070A4A4ED0A7316687ADCE0@LO2P123MB2480.GBRP123.PROD.OUTLOOK.COM>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 0100732B76
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(4636009)(376002)(396003)(346002)(136003)(366004)(39850400004)(199004)(189003)(13464003)(5660300002)(52536014)(66066001)(6116002)(33656002)(5024004)(3846002)(256004)(6916009)(5640700003)(76176011)(2351001)(6436002)(55016002)(561944003)(55236004)(186003)(229853002)(53546011)(26005)(102836004)(6506007)(53936002)(446003)(11346002)(476003)(14454004)(9686003)(6246003)(486006)(305945005)(71200400001)(2906002)(99286004)(71190400001)(7736002)(2501003)(74316002)(25786009)(1730700003)(81166006)(81156014)(86362001)(8936002)(478600001)(76116006)(8676002)(316002)(66446008)(66946007)(64756008)(66556008)(66476007)(7696005)(68736007); DIR:OUT; SFP:1102; SCL:1; SRVR:LO2P123MB2480; H:LO2P123MB2334.GBRP123.PROD.OUTLOOK.COM; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: ncsc.gov.uk does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: QFwA1qth2k1pSAS5kfn5uKdeHYa1IwZyvsyotlsUDyvRseTNQc/3V2iEYXJaJxNNCaiuhQan5Hvc/OAiAw9tOxmg6AUclGy0YV/q3VPW04Ha/QE5nu/e2ZmI1qgn+wJGGjneZcB+3YlxK/Q8wVAojan6JtstqiPulYcTZ0p+gKT/OderZo3yizWd9TDwIXBcLnCtB4Jo3PlMpJVBT8YHsKY5FrCeAVFlIlnhqkBPkdKLti37Z2zd285C8UPFn3Bb+EFPeDLYx27z6SD1nd4a669PRDwb7nNgF9P3ArzVFlpLLt9w/snofJIzu4lSRWVghmfnCUhyZamjZ84DJ6KAZkt8yPHXaPt//kkrGpMJIi5LH0AeIWH3CgdyJHgYy6vYM9Fd4uOWDMRsBVkYcy/NEicZO/ymeb9G4ZlUbjDvaj8=
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: ncsc.gov.uk
X-MS-Exchange-CrossTenant-Network-Message-Id: 33ce1bff-5e97-4072-246d-08d709c66c8c
X-MS-Exchange-CrossTenant-originalarrivaltime: 16 Jul 2019 08:20:12.4263 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 14aa5744-ece1-474e-a2d7-34f46dda64a1
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: richard49955@ncsc.gov.uk
X-MS-Exchange-Transport-CrossTenantHeadersStamped: LO2P123MB2480
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/XSiWlORje9KQHrqx-wG12_2c9NI>
Subject: Re: [dmarc-ietf] Nonexistent Domain Policy was: Re: Working Group Last Call: draft-ietf-dmarc-psd
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 16 Jul 2019 08:20:17 -0000

I'm happy with the proposal but just wanted to flag that you have a typo for the tag name in section 3.3 - you use 'sp' rather than 'np'

Thanks

Richard

| -----Original Message-----
| From: dmarc <dmarc-bounces@ietf.org> On Behalf Of Scott Kitterman
| Sent: 13 July 2019 20:35
| To: dmarc@ietf.org
| Subject: Re: [dmarc-ietf] Nonexistent Domain Policy was: Re: Working Group
| Last Call: draft-ietf-dmarc-psd
|
| On Friday, July 12, 2019 2:28:39 PM EDT Scott Kitterman wrote:
| > On Friday, July 12, 2019 1:54:57 PM EDT Kurt Andersen (b) wrote:
| > > On Fri, Jul 12, 2019 at 10:50 AM Scott Kitterman
| > > <sklist@kitterman.com>
| > >
| > > wrote:
| > > > On Wednesday, June 26, 2019 5:21:14 PM EDT Seth Blank wrote:
| > > > > 3. If an np= tag is needed to allow PSD functioning for only
| > > > > NXDOMAINs
| > > >
| > > > The limited feedback during WGLC has been favorable to this.
| > > >
| > > > This will require a rather larger change to the document than the
| > > > other issues, but they are manageable and I believe I have most of
| > > > the relevant text from earlier revisions.
| > > >
| > > > I think we should include this.
| > >
| > > I am much more concerned with adding another tag that can only be
| > > used in a PSD-DMARC record. I would be much more open to make a
| > > "normative" change to the DMARC tag list (RFC 7489 section 11.4) to
| > > define np for any DMARC record, than to make this a special case for
| > > PSD-DMARC records.
| >
| > I agree.  My intent is to add the tag to be used experimentally for
| > any DMARC record.  Part of the experiment is to see if it's useful beyond
| PSD.
|
| Attached is my proposed text to add the np tag.  Based on the discussion to
| date, I assume I'll be asked to add something like this after last call is
| complete, so please let me know how to make it better.
|
| Scott K
| This information is exempt under the Freedom of Information Act 2000 (FOIA)
| and may be exempt under other UK information legislation. Refer any FOIA
| queries to ncscinfoleg@ncsc.gov.uk
This information is exempt under the Freedom of Information Act 2000 (FOIA) and may be exempt under other UK information legislation. Refer any FOIA queries to ncscinfoleg@ncsc.gov.uk