On Sun 27/Feb/2022 18:43:10 +0100 John Levine wrote:
It appears that Alessandro Vesely  <[email protected]> said:
Setting a role=org flag would be akin to updating the PSL. Not something that every domain does every day. Perhaps nobody will ever do it. ...

Assuming you expect role=org to mean the same as what Scott and I mean by psd=n,


Correct.


I think it would be a cruel joke on our users to give it a name that looks like something that has to be in every org domain's record.


You're welcome to suggest better names.


You and I know what it means, but it'd be just a matter of time before
someone decided it was mandatory because it's "more secure". >
It is a good thing that psd=y and psd=n look obscure because they *are* obscure
with psd=n being doubly obscure.


I see, a case of security through obscurity?


It is such an extreme corner case that it's probably not worth the effort to add it to the spec, with our efforts better spent getting the 52 DMARC records at PSLs updated.

Hm... However small, it's the only quality gain we can expect by switching to tree walk. Roughly, I think it could grow to the size of the PSL private domains section, no?



Best
Ale
--





_______________________________________________
dmarc mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dmarc

Reply via email to