In many cases, an evaluator can determine a DMARC PASS result without evaluating every available identifier.
- If a message has SPF PASS with acceptable alignment, the evaluator has no need to evaluate any DKIM signatures to know that the message produces DMARC PASS. - Some identifiers are easily excluded by simple inspection: A " sendgrid.net" identifier cannot authenticate "example.com" When the evaluator has an identifier which is known but not evaluated, he does not have a way to document this outcome in the aggregate reports. To fix this hole, we should add an authentication result of "not evaluated" Doug Foster > >
_______________________________________________ dmarc mailing list [email protected] https://www.ietf.org/mailman/listinfo/dmarc
