Re: [dmarc-ietf] IETF Mailing Lists and DMARC

Theodore Ts'o <tytso@mit.edu> Thu, 03 November 2016 13:49 UTC

Return-Path: <tytso@thunk.org>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 49075129612; Thu, 3 Nov 2016 06:49:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.397
X-Spam-Level:
X-Spam-Status: No, score=-3.397 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.001, RP_MATCHES_RCVD=-1.497, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=thunk.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GKladrLEfksb; Thu, 3 Nov 2016 06:49:16 -0700 (PDT)
Received: from imap.thunk.org (imap.thunk.org [IPv6:2600:3c02::f03c:91ff:fe96:be03]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 38FD41296D0; Thu, 3 Nov 2016 06:49:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=thunk.org; s=ef5046eb; h=In-Reply-To:Content-Type:MIME-Version:References:Message-ID:Subject:Cc:To:From:Date; bh=H2AGTeZMY6Wg2cQjK+GvDbtayWMwW6/E12KIW37lZvg=; b=FvrcNHjEwlMZsYaySnyykec0j4r5nfraUUYflbkk7GPPjfvE90cVuVGlXw4vVUkqBH+KK6rSjxyd5VhPHc0s3jDEMHxINBcM9hpxvEo0QoKtMlG7U25IOwHDNMBQKTXkNR0pNaax3QNrrpsv1rkgArK5EG95Hkh6FI+YPj1ya0s=;
Received: from root (helo=callcc.thunk.org) by imap.thunk.org with local-esmtp (Exim 4.84_2) (envelope-from <tytso@thunk.org>) id 1c2IOE-0007IO-Mu; Thu, 03 Nov 2016 13:49:10 +0000
Received: by callcc.thunk.org (Postfix, from userid 15806) id 39FE9C00F4F; Thu, 3 Nov 2016 09:49:09 -0400 (EDT)
Date: Thu, 03 Nov 2016 09:49:09 -0400
From: Theodore Ts'o <tytso@mit.edu>
To: Terry Zink <tzink@exchange.microsoft.com>
Subject: Re: [dmarc-ietf] IETF Mailing Lists and DMARC
Message-ID: <20161103134909.lnndzi6feaqfskyj@thunk.org>
References: <678C2FBA-A661-4556-A300-5C08562B5F8A@iii.ca> <29429.1478113235@obiwan.sandelman.ca> <CABa8R6vHdt75NFKW3s6xOzLcq=jmVAHDPX0tjLRdGpYSTP2cYA@mail.gmail.com> <20161102232357.b55vx7est7vjrdfo@thunk.org> <CO2PR00MB01018CDB45F0CE17671AD67596A30@CO2PR00MB0101.namprd00.prod.outlook.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <CO2PR00MB01018CDB45F0CE17671AD67596A30@CO2PR00MB0101.namprd00.prod.outlook.com>
User-Agent: NeoMutt/20161014 (1.7.1)
X-SA-Exim-Connect-IP: <locally generated>
X-SA-Exim-Mail-From: tytso@thunk.org
X-SA-Exim-Scanned: No (on imap.thunk.org); SAEximRunCond expanded to false
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf/FzRJJUU0fHLAJaIrl7F5CmkRFbU>
Cc: "dmarc@ietf.org" <dmarc@ietf.org>, IETF <ietf@ietf.org>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 03 Nov 2016 13:49:18 -0000

On Thu, Nov 03, 2016 at 12:36:47AM +0000, Terry Zink wrote:
> > There is a third option --- which is that if you want to participate on certain 
> > mailing lists, you have to use a non-DMARC e-mail address. There are people 
> > with google.com addresses that need to use non-Google addresses in order to 
> > participate on the Linux Kernel Mailing List.
> 
> I've seen comments that people who were on Yahoo can fortunately go
> to Gmail. What happens when Gmail publishes a p=reject like they
> said they were going to (even if the timeline is delayed), per
> https://wordtothewise.com/2015/10/dmarc-news-gmail-preject-and-arc/?
> 
> Perhaps people can go to Outlook.com? What happens if they go to
> DMARC p=reject? Everyone can go an sign up for yet another domain?
> 
> That just kicks the can down the road, but eventually that can will
> take no more kicks.

And then developers can move to fastmail.fm; there are quite a few
mail providers, after all.  And I would expect market forces, combined
with mail providers who aren't trying to send official bills to
consumers that can be easily phished from the same domain as their
customers, such that there will probably be at least one mail provider
that will meet the need of developers and other people who need
traditional mailing lists as they have been implemented for decades.

Alternatively, hopefully ARC will become ready before this is an
issue.  At least a few of the major mail providers have said they
won't enable p=reject until ARC has had a chance to be deployed,
probably because they don't want to have a wholesale (or high profile)
defections from their mail service to providers such as fastmail.fm.

Regards,

						- Ted