Does it make sense that SPFAuthResultType element counts are allowed to be unbounded? I would think that it should be a maximum of 2, and then only if the scope is indicated (helo/mfrom)
from https://tools.ietf.org/html/rfc7489 <xs:complexType name="AuthResultType"> <xs:sequence> <!-- There may be no DKIM signatures, or multiple DKIM signatures. --> <xs:element name="dkim" type="DKIMAuthResultType" minOccurs="0" maxOccurs="unbounded"/> <!-- There will always be at least one SPF result. --> <xs:element name="spf" type="SPFAuthResultType" minOccurs="1" maxOccurs="unbounded"/> </xs:sequence> </xs:complexType> --Tomki -- This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean.
_______________________________________________ dmarc mailing list dmarc@ietf.org https://www.ietf.org/mailman/listinfo/dmarc