Re: DMARC and ietf.org

"John Levine" <johnl@taugh.com> Mon, 15 August 2016 20:33 UTC

Return-Path: <johnl@taugh.com>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0088A12D12E for <ietf@ietfa.amsl.com>; Mon, 15 Aug 2016 13:33:19 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6m-L0qcMbckQ for <ietf@ietfa.amsl.com>; Mon, 15 Aug 2016 13:33:17 -0700 (PDT)
Received: from miucha.iecc.com (abusenet-1-pt.tunnel.tserv4.nyc4.ipv6.he.net [IPv6:2001:470:1f06:1126::2]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8B6CB12D0E5 for <ietf@ietf.org>; Mon, 15 Aug 2016 13:33:17 -0700 (PDT)
Received: (qmail 47597 invoked from network); 15 Aug 2016 20:33:16 -0000
Received: from unknown (64.57.183.18) by mail1.iecc.com with QMQP; 15 Aug 2016 20:33:16 -0000
Date: Mon, 15 Aug 2016 20:32:54 -0000
Message-ID: <20160815203254.10077.qmail@ary.lan>
From: John Levine <johnl@taugh.com>
To: ietf@ietf.org
Subject: Re: DMARC and ietf.org
In-Reply-To: <20160815200527.GA20177@gsp.org>
Organization:
X-Headerized: yes
Mime-Version: 1.0
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf/ueeazsacViFexIXxrpCm5OCyd1I>
Cc: rsk@gsp.org
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 15 Aug 2016 20:33:19 -0000

>> I've found that the best place to do anti-DMARC stuff is in a shim
>> between the list package and the sendmail program, since it can do
>> whatever you want to the message and it still works when you upgrade
>> the list software.
>
>Do you recommend this on the inbound or outbound side?  That is: before
>the MTA hands off to the MLM, or after the MLM hands off to the MTA?

The latter, after the MLM has made whatever changes it's going to make
so the shim can put on a shiny new valid DKIM signature with the
list's domain, and in the near future can add the appropriate ARC glop.

R's,
JOhn