Re: [EAI] New version of E-mail Authentication for Internationalized Mail draft

Frank Ellermann <> Wed, 24 January 2018 10:07 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id CAF3112DA0D for <>; Wed, 24 Jan 2018 02:07:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -2.2
X-Spam-Status: No, score=-2.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, FROM_LOCAL_NOVOWEL=0.5, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (2048-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id Yk8xCE-VvT_t for <>; Wed, 24 Jan 2018 02:07:50 -0800 (PST)
Received: from ( [IPv6:2607:f8b0:400c:c05::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by (Postfix) with ESMTPS id E1ECB12D964 for <>; Wed, 24 Jan 2018 02:07:49 -0800 (PST)
Received: by with SMTP id w201so2187447vkw.0 for <>; Wed, 24 Jan 2018 02:07:49 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=d4vvA4ugh2rT89ojE56DA8n+7fmogS5Q2an/+LqNsQY=; b=c0DJUwvtlVtcY0ljJyTsDZLVyBVfvnpAF1sjy/ptyWdp/GPja9fszB8oCEMwnxkKLu LiU3r717XtQKzjdY7GDZ3IjB9PJ2alvT9XXY2zvu5ninGdNBCFEPdxPafu4ieLw4W5Kt ygBxIIQyP7v8/rYaJ9nrN2PnS/8Gl9rzGcF29hisHVl3HXFjJFGTEXIYRk2WayN/aUKs 9jIrN/xolvN92wa3uFZZ5mEeJSkaX1tyOzVg0KVkYB8R1IssYKJQhbYECM8NlwTxXYud rsXymhpvYglhsv6ou3GX/VAFHbqCY5HWwRk0QltiqmbdsA7pr8n0Blx/oQRJUwkAAHxN +P4w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=d4vvA4ugh2rT89ojE56DA8n+7fmogS5Q2an/+LqNsQY=; b=RqHRg4J+4C2fVU1WS36yaU/FMoSQzvILY+LXSLtoD+0CVRBslmU/4XhQ7Xq/m37cUe 5iPF8Z3UujRUf/b8S0C/MYVr74morO2d6fNnsO9e6rzf4bw9mkBFpEyPM0+QBfTKY3em 08dRs8NvRr8rOSvpaXjwt6GPybpayWBZNnt3kUflZJ8Dr5Pngi/YZ9/F57RGIB2wuh2X AMG+xu1Hh23IWizh2uFpSJ4RhTETa8JS78gjXdTtTChfPynKMyVYbsXoM9LbU8bAK4/r jgvGRmTdgOMiHvAQ+qyq0DG/ElGikDwl71R62cJ3HMJSXQjcbz61gBw69wy/WgLhEYtG sovA==
X-Gm-Message-State: AKwxytfXoAgS2l4I4BjKROiZvGkTna6uYpMgUNAmQq5iIowDKKBOm1OD fSRuKgsS+9NX0SzxVPKsYCajlVKGGX5d5XGEeX1+tB2F0w==
X-Google-Smtp-Source: AH8x224eHdKaarBEUeeksT5LLgTAIGZ0T6k8c8ZXcYQEhX1B23OW8V+Q6VskkwucmNTnRPATJjSIIQoF8DNCVRmvaaw=
X-Received: by with SMTP id m69mr3826061vkf.86.1516788468940; Wed, 24 Jan 2018 02:07:48 -0800 (PST)
MIME-Version: 1.0
Received: by with HTTP; Wed, 24 Jan 2018 02:07:08 -0800 (PST)
In-Reply-To: <alpine.OSX.2.21.1801232001100.22978@ary.qy>
References: <alpine.OSX.2.21.1801232001100.22978@ary.qy>
From: Frank Ellermann <>
Date: Wed, 24 Jan 2018 11:07:08 +0100
Message-ID: <>
To: John R Levine <>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <>
Subject: Re: [EAI] New version of E-mail Authentication for Internationalized Mail draft
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "EAI \(Email Address Internationalization\)" <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Wed, 24 Jan 2018 10:07:53 -0000

Hi, I've certainly forgotten what I put in draft-ellermann-spf-eai-05
more than 6 years ago,
but apparently I thought that local part macros might not work as
expected (bad enough
to mention this also in the security considerations). At this time EAI
and SPF were still
experimental, and RFC 7208 was still Scott's draft. :-)

Unrelated Gmail observation, they tag SPF PASS + DKIM PASS + DMARC FAIL as spam.

On 24 January 2018 at 02:01, John R Levine <> wrote:
> Read all about it:
> This is an updated version of a draft I wrote two years ago, that tries to
> nail down the small changes to SPF, DKIM, and DMARC in EAI messages.  This
> version adds a section for the Authentication-Results header.
> What it mostly says is that wherever you can have a domain name in a mail
> message header it can be a U-label, and wherever there's a mailbox, the
> local part can be UTF-8, while stuff in the DNS doesn't change and domains
> there are A-labels, same as always.  It's intended to be utterly
> unsurprising, but there's enough ambiguity and well-intended bad advice in
> existing RFCs that I think this is worth doing.
> I'm working on an intro to implenting EAI document underwritten by ICANN so
> it would be nice if this were far enough along that I could point to it in
> the relevant sections rather than just Making Stuff Up.
> R's,
> John
> _______________________________________________
> IMA mailing list