Hello,

we use to send a portion of messages requesting delivery status notification on success. In general DSN messages tend to not pass DMARC very often, but as we request DSN on success explicit
we monitor them.

Now I noticed a pattern on DSN sent from Microsoft.

RFC5321.MailFrom <>
RFC5322.From     <postmaster@${customer}.emea.microsoftonline.com>
DKIM-Signature   d=${customer}.onmicrosoft.com

SPF could never be aligned and DKIM isn't aligned.

$ opendmarc-check microsoftonline.com
DMARC record for microsoftonline.com:
        Sample percentage: 100
        DKIM alignment: relaxed
        SPF alignment: relaxed
        Domain policy: none
        Subdomain policy: quarantine
        Aggregate report URIs:
                mailto:[email protected]
        Failure report URIs:
                mailto:[email protected]

Any subdomain use p=quarantine but any DSN systematically fail.
Is this intentional?

Andreas




_______________________________________________
dmarc-discuss mailing list
[email protected]
http://www.dmarc.org/mailman/listinfo/dmarc-discuss

NOTE: Participating in this list means you agree to the DMARC Note Well terms 
(http://www.dmarc.org/note_well.html)

Reply via email to