Re: [dmarc-ietf] What bad stuff can a broken DMARC record cause?

2022-05-06 Thread Murray S. Kucherawy
On Sun, Apr 24, 2022 at 11:38 AM John R Levine wrote: > Someone I know asked me what sort of bad things could happen if one > published a broken DMARC record. Obviously, if your record is bad people > won't follow your policies and you won't get your reports, but anything > else? Have you ever

Re: [dmarc-ietf] What bad stuff can a broken DMARC record cause?

2022-04-25 Thread John Levine
It appears that Damian Lukowski said: >> Good thought but I was more wondering about the sort of mistakes an >> inept sysadmin would make in configuring DMARC records. > >How would that even be possible without the DMARC spec or DMARC implementation >being broken? What is a broken DMARC record?

Re: [dmarc-ietf] What bad stuff can a broken DMARC record cause?

2022-04-24 Thread Damian Lukowski
Good thought but I was more wondering about the sort of mistakes an inept sysadmin would make in configuring DMARC records. How would that even be possible without the DMARC spec or DMARC implementation being broken? What is a broken DMARC record?

Re: [dmarc-ietf] What bad stuff can a broken DMARC record cause?

2022-04-24 Thread John Levine
It appears that Elizabeth Zwicky said: > >Lots of people have wildcard TXT records which mean that if you look up a >DMARC record you get an SPF record. They get the delivery they’d get with no >DMARC record on the systems I know about and it doesn’t seem to annoy them >enough to make them

Re: [dmarc-ietf] What bad stuff can a broken DMARC record cause?

2022-04-24 Thread Elizabeth Zwicky
Lots of people have wildcard TXT records which mean that if you look up a DMARC record you get an SPF record. They get the delivery they’d get with no DMARC record on the systems I know about and it doesn’t seem to annoy them enough to make them stop, which is reasonable evidence it doesn’t

[dmarc-ietf] What bad stuff can a broken DMARC record cause?

2022-04-24 Thread John R Levine
Someone I know asked me what sort of bad things could happen if one published a broken DMARC record. Obviously, if your record is bad people won't follow your policies and you won't get your reports, but anything else? Have you ever heard of MTAs burping on a bad DMARC record? I've looked