On Tuesday, April 5, 2022 3:57:30 AM EDT Alessandro Vesely wrote: > On Mon 04/Apr/2022 19:31:36 +0200 John R Levine wrote: > >>> If it's the original domain, yes. > >> > >> We know that co.uk is not an Organizational Domain. Asking what is the > >> Organizational Domain of co.uk is an ill-posed question. > > > > These are all in the PSL. What are their organizational domains? > > Scott took the time to define PSDs and PSOs in RFC 9091, restated in > Sections 3.2.8 and 3.2.9 of the current draft. Since the definitions of > Organizational Domain (both the current 3.2.7 an my proposed change) > require PSD + 1, a PSD has to be a proper subdomain of another PSD in order > to admin an Organizational Domain itself. > > > _dmarc.wa.gov.au TXT "v=DMARC1; p=none; fo=1:d; > > rua=mailto:[email protected],mailto:dmarc_records@wa. > > gov.au;ruf=mailto:[email protected],mailto:dmarc_recor > > [email protected]" wa.gov.au mail is handled by 10 > > inbound-smtp.us-west-2.amazonaws.com. wa.gov.au TXT "v=spf1 > > include:amazonses.com ~all" > > > > _dmarc.gov.az TXT "v=DMARC1; p=reject; pct=100; fo=1; adkim=s; aspf=s; > > rua=mailto:[email protected]" gov.az mail is handled by 0 sea1.mail.gov.az. > > gov.az mail is handled by 10 sea2.mail.gov.az. > > gov.az TXT "v=spf1 redirect=_spfx.mail.gov.az" > > > > _dmarc.gov.in TXT "v=DMARC1; p=quarantine; sp=none; > > fo=1;rua=mailto:[email protected];ruf=mailto:[email protected]" > > gov.in mail is handled by 5 mailgwgov.nic.in. > > gov.in TXT "v=spf1 mx ip4:164.100.14.0/24 ip4:164.100.2.0/24 > > ip4:164.100.10.0/24 ip4:164.100.15.0/24 ip4:164.100.13.0/24 -all" > > > > _dmarc.edu.kz TXT "v=DMARC1; p=none; rua=mailto:[email protected]" > > edu.kz mail is handled by 10 post.mail.kz. > > edu.kz TXT "v=spf1 a mx ip4:88.204.157.164 ~all" > > > > _dmarc.ac.me TXT "v=DMARC1; p=quarantine; adkim=r; aspf=r; fo=0; pct=100; > > rua=mailto:[email protected]" ac.me mail is handled by 10 mail.ac.me. > > ac.me TXT "v=spf1 mx ip4:89.188.43.10 ip6:2a02:4280:0:200:89:188:43:10 > > -all" > > > > _dmarc.nhs.uk TXT "v=DMARC1; p=reject; sp=none;adkim=s;aspf=s;fo=1; > > rua=mailto:[email protected],mailto:[email protected]" > > nhs.uk mail is handled by 50 mail.nhs.uk. > > nhs.uk TXT "v=spf1 ip4:213.161.89.71 ip4:213.161.89.72 ip4:213.161.89.73 > > ip4:213.161.89.103 ip4:213.161.89.104 ip4:213.161.89.105 -all" > > > > _dmarc.police.uk TXT > > "v=DMARC1;p=none;sp=none;adkim=s;aspf=s;fo=1;rua=mailto:[email protected] > > ervice.gov.uk;ruf=mailto:[email protected]" police.uk has no > > MX record > > police.uk TXT "v=spf1 -all" > > > > _dmarc.k12.dc.us TXT "v=DMARC1; p=none; > > rua=mailto:[email protected];" k12.dc.us mail is handled by 10 > > dck12.mail.protection.outlook.com. > All of the above admit no org domain. I'd amend step 2 like so: > > OLD > 2. If a valid DMARC record contains the psd= tag set to 'y' (psd=y), > the Organizational Domain is the domain one label below this one > in the DNS hierarchy, and the selection process is complete. > > NEW > 2. If a valid DMARC record contains the psd= tag set to 'y' (psd=y), > the Organizational Domain is the previous domain of those selected, > if any. In any case the selection process is complete. > > > I note that only police.uk is registered at psddmarc.org. It is also the > only "pure" PSD, in the sense that they don't send mail themselves. > > Scott, is that the reason why the others are not registered? > > All them should amend their DMARC records adding psd=y.
The entities listed on the psddmarc.org registry requested to be there. I think that once we've settled the questions around the psd tag the WG should ask for an early registration for the new tag. I think that's the point where these entities should update their records. Generally speaking, I think that a PSD can send mail and it should be covered by DMARC, so I disagree with the idea that a PSD can never also be an Org. Scott K _______________________________________________ dmarc mailing list [email protected] https://www.ietf.org/mailman/listinfo/dmarc
