Re: [ietf-dkim] draft-ietf-dkim-mailinglists-02 review

"McDowell, Brett" <bmcdowell@paypal-inc.com> Tue, 14 September 2010 15:40 UTC

Return-Path: <ietf-dkim-bounces@mipassoc.org>
X-Original-To: ietfarch-ietf-dkim-archive@core3.amsl.com
Delivered-To: ietfarch-ietf-dkim-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 9C0993A6918 for <ietfarch-ietf-dkim-archive@core3.amsl.com>; Tue, 14 Sep 2010 08:40:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.488
X-Spam-Level:
X-Spam-Status: No, score=-6.488 tagged_above=-999 required=5 tests=[AWL=0.111, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5ZQW8+Yr4J6A for <ietfarch-ietf-dkim-archive@core3.amsl.com>; Tue, 14 Sep 2010 08:40:41 -0700 (PDT)
Received: from sbh17.songbird.com (sbh17.songbird.com [72.52.113.17]) by core3.amsl.com (Postfix) with ESMTP id D28B43A6909 for <ietf-dkim-archive@ietf.org>; Tue, 14 Sep 2010 08:40:41 -0700 (PDT)
Received: from sbh17.songbird.com (sbh17.songbird.com [127.0.0.1]) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id o8EFdraM023394; Tue, 14 Sep 2010 08:39:59 -0700
DKIM-Signature: v=1; a=rsa-sha1; c=simple/simple; d=mipassoc.org; s=k00001; t=1284478799; bh=Qm1JYRzhcx9tPsWsAvIypaUVKgU=; h=From:To:Date: Message-ID:References:In-Reply-To:MIME-Version:Cc:Subject:List-Id: List-Unsubscribe:List-Archive:List-Post:List-Help:List-Subscribe: Content-Type:Content-Transfer-Encoding:Sender; b=N7uyraRPQgxQ+yFPe TK/ZCUyClmllI01Lzpm6yD9ypSLUQ7pdLw4pkzwdlQ3kXtbKjg1MqrxOTKU9CMAOcD/ MLhKbvGTPkDMhLIKpTRX0L2PZC38dPeswC2aTy77hcGPC6kqTbf6eJJ0eueIlXUgd/N QCO8Cd7hX9mFgRr3yoKY=
Received: from den-mipot-001.corp.ebay.com (den-mipot-001.corp.ebay.com [216.113.175.152]) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id o8EFYwO2023187 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=FAIL) for <ietf-dkim@mipassoc.org>; Tue, 14 Sep 2010 08:35:04 -0700
Authentication-Results: sbh17.songbird.com; dkim=pass (768-bit key) header.i=bmcdowell@paypal-inc.com
X-EBay-Corp: Yes
X-IronPort-AV: E=Sophos;i="4.56,365,1280732400"; d="scan'208";a="72108648"
Received: from den-vtenf-001.corp.ebay.com (HELO DEN-MEXHT-001.corp.ebay.com) ([10.101.112.212]) by den-mipot-001.corp.ebay.com with ESMTP; 14 Sep 2010 08:00:30 -0700
Received: from DEN-MEXMS-001.corp.ebay.com ([10.241.16.228]) by DEN-MEXHT-001.corp.ebay.com ([10.241.17.52]) with mapi; Tue, 14 Sep 2010 09:00:25 -0600
From: "McDowell, Brett" <bmcdowell@paypal-inc.com>
To: Douglas Otis <dotis@mail-abuse.org>
Date: Tue, 14 Sep 2010 09:00:23 -0600
Thread-Topic: [ietf-dkim] draft-ietf-dkim-mailinglists-02 review
Thread-Index: ActUHY9dV9NF34bXT9iY7/DeXftFGA==
Message-ID: <48230713-E189-48F5-9BC7-5EB96426C0D6@paypal-inc.com>
References: <20100901091802.6173.qmail@joyce.lan> <op.vitxkai96hl8nm@clerew.man.ac.uk> <58CE74EC-512F-472A-8F63-682E1E52A14D@wordtothewise.com> <201009101731.57732.ietf-dkim@kitterman.com> <DE7D7AF9-6898-47B0-826C-89B4C20E7D54@wordtothewise.com> <op.viywqq0p6hl8nm@clerew.man.ac.uk> <alpine.BSF.2.00.1009131006390.2706@joyce.lan> <EC64FD4B-6CE3-45FA-9C75-7D2D8D9C45F7@paypal-inc.com> <4C8E97EC.9010604@mail-abuse.org>
In-Reply-To: <4C8E97EC.9010604@mail-abuse.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
MIME-Version: 1.0
X-CFilter: Scanned
X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.0 (sbh17.songbird.com [127.0.0.1]); Tue, 14 Sep 2010 08:39:59 -0700 (PDT)
X-Greylist: IP, sender and recipient auto-whitelisted, not delayed by milter-greylist-4.0 (sbh17.songbird.com [72.52.113.70]); Tue, 14 Sep 2010 08:35:04 -0700 (PDT)
X-MIME-Autoconverted: from quoted-printable to 8bit by sbh17.songbird.com id o8EFYwO2023187
Cc: "ietf-dkim@mipassoc.org" <ietf-dkim@mipassoc.org>
Subject: Re: [ietf-dkim] draft-ietf-dkim-mailinglists-02 review
X-BeenThere: ietf-dkim@mipassoc.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF DKIM Discussion List <ietf-dkim.mipassoc.org>
List-Unsubscribe: <http://mipassoc.org/mailman/listinfo/ietf-dkim>, <mailto:ietf-dkim-request@mipassoc.org?subject=unsubscribe>
List-Archive: <http://mipassoc.org/pipermail/ietf-dkim>
List-Post: <mailto:ietf-dkim@mipassoc.org>
List-Help: <mailto:ietf-dkim-request@mipassoc.org?subject=help>
List-Subscribe: <http://mipassoc.org/mailman/listinfo/ietf-dkim>, <mailto:ietf-dkim-request@mipassoc.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: ietf-dkim-bounces@mipassoc.org
Errors-To: ietf-dkim-bounces@mipassoc.org

On Sep 13, 2010, at 5:30 PM, Douglas Otis wrote:

>  On 9/13/10 1:03 PM, McDowell, Brett wrote:
>> The ADSP=discardable deployer is not conveying apathy regarding the deliverability of their mail, quite the opposite IMO.  They are saying (to paraphrase) "please attempt to verify the DKIM signature on this message against the key record in our DNS for this domain/subdomain, and if you cannot verify the signature then please discard the message as a means of protecting your subscriber from phishing attacks, otherwise please deliver the message and do so knowing we put this much effort into ensuring the goodness of the mail before we sent it"
> For MLMs making modifications that invalidate DKIM signatures, posting 
> should be blocked for domains making an ADSP dkim=discardable 
> assertion.  Such an assertion might cause other subscribers to refuse 
> messages from an Author Domain with the discardable assertion and cause 
> delivery and message queuing to be problematic.  Otherwise, those 
> refusing these messages run a risk of being unsubscribed.

That would be an undesired outcome and therefore a "reject" by the MLM would be more appropriate (until we have a RFC in place and adopted that enables the "transient trust"/"chain of trust" notion I've been advocating for).  And yes, I'm going to write one but perhaps only after I work with more mailbox providers to implement the notion now.  

> 
> -Doug
> _______________________________________________
> NOTE WELL: This list operates according to 
> http://mipassoc.org/dkim/ietf-list-rules.html


_______________________________________________
NOTE WELL: This list operates according to 
http://mipassoc.org/dkim/ietf-list-rules.html