[dmarc-ietf] DMARC marketing

2020-07-22 Thread Jim Fenton
This: On 7/21/20 12:29 PM, Joseph Brennan wrote: > > My understanding of DMARC's purpose was to protect transactional > messages from sources like banks, credit card issuers, online shopping > venues, and the like. It supposed that those messages should pass only > directly from the source to the

Re: [dmarc-ietf] Response to a claim in draft-crocker-dmarc-author-00 security considerations

2020-07-22 Thread Dotzero
On Wed, Jul 22, 2020 at 6:38 PM Jesse Thompson wrote: > On 7/22/20 12:05 PM, John Levine wrote: > > I don't believe we have a charter to tell mailing list operators what > > to do, even if we believed, against all experience, that they would > > take our advice. > > https://cyber.dhs.gov/bod/18-0

Re: [dmarc-ietf] Response to a claim in draft-crocker-dmarc-author-00 security considerations

2020-07-22 Thread Jesse Thompson
On 7/22/20 12:05 PM, John Levine wrote: > I don't believe we have a charter to tell mailing list operators what > to do, even if we believed, against all experience, that they would > take our advice. https://cyber.dhs.gov/bod/18-01/ references https://dmarc.org/wiki/FAQ#I_operate_a_mailing_list_

Re: [dmarc-ietf] Response to a claim in draft-crocker-dmarc-author-00 security considerations

2020-07-22 Thread John Levine
In article <002201d6602d$8b87dca0$a29795e0$@bayviewphysicians.com> you write: >Since the conflict between DMARC and Mailing Lists is related to the changes >that Mailing List apply >to a received message, it may be useful to review the purposes that each of >those changes serve, with >a goal of e

Re: [dmarc-ietf] Response to a claim in draft-crocker-dmarc-author-00 security considerations

2020-07-22 Thread Doug Foster
Since the conflict between DMARC and Mailing Lists is related to the changes that Mailing List apply to a received message, it may be useful to review the purposes that each of those changes serve, with a goal of eliminating unnecessary changes. Specifically, this list adds a footer to every me

Re: [dmarc-ietf] Response to a claim in draft-crocker-dmarc-author-00 security considerations

2020-07-22 Thread Dave Crocker
On 7/21/2020 1:08 AM, Laura Atkins wrote: When we’re basing a protocol on “what the user sees” and “what the user can trust” then I think we have to. DMARC says “users can trust that mail from @domain.example is really from @domain.example” but if the user never sees that, how do they know?