It appears that John Levine <[email protected]> said: >It appears that Scott Kitterman <[email protected]> said: >>If we did first match, but allowed for relaxed alignment for org domains also >>when one is a subdomain of the other, I don't think that helps with the evil >>sibling problem. > >I think that would largely solve it. I am worried about foo.us.com pretending >to be bar.us.com since they have no relation to each other. I am much less >worried about foo.us.com pretending to be us.com or vice versa since they >have a direct business relationship and so have recourse against each other.
Hm, no, if us.com has a regular non-PSD DMARC record, bar.us.com is aligned with foo.us.com. If we do first match, it's not aligned with mail.foo.us.com if there's also a DMARC record at foo.us.com, but it feels like we're getting into the weeds. R's, John _______________________________________________ dmarc mailing list [email protected] https://www.ietf.org/mailman/listinfo/dmarc
