In many cases, an evaluator can determine a DMARC PASS result
without evaluating every available identifier.

   - If a message has SPF PASS with acceptable alignment, the evaluator has
   no need to evaluate any DKIM signatures to know that the message produces
   DMARC PASS.
   - Some identifiers are easily excluded by simple inspection:   A "
   sendgrid.net" identifier cannot authenticate "example.com"

When the evaluator has an identifier which is known but not evaluated, he
does not have a way to document this outcome in the aggregate reports.   To
fix this hole, we should add an authentication result of "not evaluated"

Doug Foster

>
>
_______________________________________________
dmarc mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dmarc

Reply via email to