Maybe better?: NEW If they can block outgoing or reply DNS messages, they can prevent systems from discovering senders' DMARC policies. Recipients will then use their local policies for handling mail in the absence of DMARC and will not be able to take the senders' policies into account. END
(Or just skip the second sentence and do it as you suggest....) Barry On Thu, Feb 29, 2024 at 4:44 PM Todd Herr <[email protected]> wrote: > > Colleagues, > > The second bullet of section 11.3 DNS Security reads: > "If they can block outgoing or reply DNS messages, they can prevent systems > from discovering senders' DMARC policies, causing recipients to assume p=none > by default." This seems inconsistent with the text in 5.7.2 ("Continue if one > is found, or terminate DMARC evaluation otherwise") and 4.7 ("Handling of DNS > errors when querying for the DMARC policy record is left to the discretion of > the Mail Receiver") neither of which describe a scenario where "No DMARC > record found means DMARC record exists with a policy of p=none" I believe the > phrase "causing recipients to assume p=none by default" should be stricken > from the bullet in 11.3. > Please discuss. > > -- > > Todd Herr | Technical Director, Standards & Ecosystem > e: [email protected] > p: 703-220-4153 > m: 703.220.4153 > > This email and all data transmitted with it contains confidential and/or > proprietary information intended solely for the use of individual(s) > authorized to receive it. If you are not an intended and authorized recipient > you are hereby notified of any use, disclosure, copying or distribution of > the information included in this transmission is prohibited and may be > unlawful. Please immediately notify the sender by replying to this email and > then delete it from your system. > > _______________________________________________ > dmarc mailing list > [email protected] > https://www.ietf.org/mailman/listinfo/dmarc _______________________________________________ dmarc mailing list [email protected] https://www.ietf.org/mailman/listinfo/dmarc
