In <8745247.6SOmXc3d5b@scott-latitude-e6320>, on 02/08/2012
   at 11:02 PM, Scott Kitterman <[email protected]> said:

>I would propose adding between 8.6 and 8.7:

>6.5.  A report generator MUST NOT send abuse reports to the Mail From
>domain  if the message has an SPF result other than Pass, None, or
>Neutral.

I'd suggest

6.5.  A report generator SHOULD NOT send abuse reports to the Mail
>From domain unless the domain has been authenticated, e.g., if the
message has an SPF result of Pass, None, or Neutral. Similarly, a
report generator SHOULD NOT send abuse reports to the  header From
domain unless the domain has been authenticated.

I'd support MUST NOT for both if we make a case that "it is actually
required for interoperation or to limit behavior which has potential
for causing harm", as specificed in RFC 2119. 

-- 
     Shmuel (Seymour J.) Metz, SysProg and JOAT
     Atid/2        <http://patriot.net/~shmuel>
We don't care. We don't have to care, we're Congress.
(S877: The Shut up and Eat Your spam act of 2003)

_______________________________________________
marf mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/marf

Reply via email to