It appears that Todd Herr  <[email protected]> said:
>   flows for the domain or sub-domains.  It is not yet ready to commit
>   to conveying a severity of concern for unauthenticated email using
>   its domain.

That's just wrong.  I've looked at the numbers, and p=none perfectly 
communicates
my level of concern.

If you want to say that someone only implements DMARC if they publish 
p=quarantine
or p=reject, OK, but please don't try to read people's minds.

R's,
John

PS:
>   *  Send aggregate reports to Domain Owners at least every 24 hours
>      when a minimum of 100 messages with that domain in the
>      RFC5322.From header field have been seen during the reporting
>      period

I agree that's desirable but not mandatory.  We are not the protocol police,
if people don't want to do something, we can't force them.

R's,
John

_______________________________________________
dmarc mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dmarc

Reply via email to