Re: [dmarc-ietf] Proposed text for p=reject and indirect mail flows

Scott Kitterman <sklist@kitterman.com> Tue, 28 March 2023 20:24 UTC

Return-Path: <sklist@kitterman.com>
X-Original-To: dmarc@ietfa.amsl.com
Delivered-To: dmarc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 11B24C15270E for <dmarc@ietfa.amsl.com>; Tue, 28 Mar 2023 13:24:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.097
X-Spam-Level:
X-Spam-Status: No, score=-7.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (unsupported algorithm ed25519-sha256)" header.d=kitterman.com header.b="LoiHIwtr"; dkim=pass (2048-bit key) header.d=kitterman.com header.b="UPYNFUZ/"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lSQvBc_ctd_C for <dmarc@ietfa.amsl.com>; Tue, 28 Mar 2023 13:24:44 -0700 (PDT)
Received: from interserver.kitterman.com (interserver.kitterman.com [64.20.48.66]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DCA47C1527AE for <dmarc@ietf.org>; Tue, 28 Mar 2023 13:24:44 -0700 (PDT)
Received: from interserver.kitterman.com (interserver.kitterman.com [IPv6:2604:a00:6:1039:225:90ff:feaa:b169]) by interserver.kitterman.com (Postfix) with ESMTPS id 12A37F802F1; Tue, 28 Mar 2023 16:24:35 -0400 (EDT)
DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903e; t=1680035059; h=date : from : to : subject : in-reply-to : references : message-id : mime-version : content-type : content-transfer-encoding : from; bh=vmrjxtkHylqlcvgidZ9beTKBhxNW1N7kopOADDoPgP4=; b=LoiHIwtrk5aKSyGX3vjrnYYEZXvuzVAr5y2amC2i+T1UX3iaukPFZIzOlY2qRNz2FlLQE jsIpof/CAtlJpwTBA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kitterman.com; i=@kitterman.com; q=dns/txt; s=201903r; t=1680035059; h=date : from : to : subject : in-reply-to : references : message-id : mime-version : content-type : content-transfer-encoding : from; bh=vmrjxtkHylqlcvgidZ9beTKBhxNW1N7kopOADDoPgP4=; b=UPYNFUZ/3MSa668Vfhp+H4t+rrOyXvPEeEJISv6z0UwFjA3hr7iBBLBtYpC4mGBvi3qzC EdpxJxcdLRi3n9W9pQ10HU0CD2SWol2x6VZeNk2Yx0NE3HqWB4jkumJT+zUO529HdkefGgd Of78i/mMpyIpAPg6pIFhyWb3nESU+yttI3VHRIpJOTqalgfHxDH/kM7YOZ5gnv0kYP2OG7X Pq838Ahi+myXsvO1Un5jbWeEgObeYJiYeTopgUvgGvskfThjw02i6QpvH+FsurmarGTm6iC jklOVfbU07+QNbIg0zWnV/QpSmNXMUmlL6B1WbkxmMGa1ACJccun4o5526dQ==
Received: from [127.0.0.1] (static-72-81-252-22.bltmmd.fios.verizon.net [72.81.252.22]) by interserver.kitterman.com (Postfix) with ESMTPSA id AA3C9F801D5; Tue, 28 Mar 2023 16:24:19 -0400 (EDT)
Date: Tue, 28 Mar 2023 20:24:14 +0000
From: Scott Kitterman <sklist@kitterman.com>
To: dmarc@ietf.org
In-Reply-To: <CAHej_8msLJQ0vbZ2jzitjxrQ1wdim5bHJkiD-QrU5F0EJvQp0g@mail.gmail.com>
References: <CALaySJ+NBg9vzqa0_t-sBf7EKXQ3A=DTyy-Vc7M-ZK9-vfJxmw@mail.gmail.com> <6319292.vCqnBZbX7o@localhost> <CAHej_8nd1xyAgwASLJbuJHyXEAfHbjqxNH1XtJxKFyfyOneyug@mail.gmail.com> <13145172.pEV04Z3DvM@localhost> <CAHej_8msLJQ0vbZ2jzitjxrQ1wdim5bHJkiD-QrU5F0EJvQp0g@mail.gmail.com>
Message-ID: <25E13E35-41E2-43F9-B28D-5E613A13D06A@kitterman.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/dmarc/zwxjyLXhVMw7lN6rT3wmq5DEYfs>
Subject: Re: [dmarc-ietf] Proposed text for p=reject and indirect mail flows
X-BeenThere: dmarc@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Domain-based Message Authentication, Reporting, and Compliance \(DMARC\)" <dmarc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dmarc>, <mailto:dmarc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dmarc/>
List-Post: <mailto:dmarc@ietf.org>
List-Help: <mailto:dmarc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dmarc>, <mailto:dmarc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Mar 2023 20:24:49 -0000


On March 28, 2023 8:20:54 PM UTC, Todd Herr <todd.herr=40valimail.com@dmarc.ietf.org> wrote:
>On Tue, Mar 28, 2023 at 4:01 PM Scott Kitterman <sklist@kitterman.com>
>wrote:
>
>>
>> "...MUST NOT deploy a DMARC policy other than p=none because use of
>> p=reject
>> or (to a slightly lesser extent) p=quarantine for such domains is
>> extremely
>> harmful to email interoperability.  Mitigation strategies are discussed in
>> [RFC 7960] and [RFC 8617]."
>>
>> I don't think we need to reiterate what p=reject does here, that's
>> extensively
>> addressed elsewhere in the document.  I don't think we have enough data to
>> opine either way about the effectiveness of such strategies, so it's
>> enough to
>> point at them here.  We don't currently list RFC 8617 as a reference.  I
>> think
>> introducing an informative reference here is useful.  It's experimental,
>> so we
>> definitely don't want to put any normative language around it.
>>
>> I suspect that's probably not what you would find ideal (it's not what I
>> would
>> find ideal either, but I can live with it).  Can you live with it?  What
>> do
>> others think?
>>
>>
>In my estimation, the language you propose here establishes the primacy of
>interoperability over the needs/wishes of the domain owner.
>
>My preference is for language that acknowledges the primacy of the domain
>owner over interoperability.
>
>I don't have time tonight to propose alternative text, but I wanted to
>acknowledge that I've read your message and make a promise to propose
>alternative text tomorrow.

Yes, but that's what RFCs are for.  Thanks for replying.

Scott K