Still, i am a bit wondering; Looking at the data flushed in so far (and
already multiple bugs filed against implementations)... there are a lot
of funny milters and often unmaintained software integrated in funny
docker stacks (probably preaching to the choir there, but i have a lot
of grievances with those setups), and generally a lot of awry things
(example.com. IN TXT "v=spf1 include:example.com -all" is, for example,
far more common than i'd have ever believed...).

In the DMARC working group we've had endless arguments about what changes will or won't break existing DMARC setups, informed by a lot of opinions and very little data. Actual data would be greatly appreciated.

It's not surprising that there are a lot of broken DMARC and SPF records. The question is whether anyone cares. My impression is that in many cases there was a checklist item "DMARC" so someone did the absolute mimimum. A p=none policy, a sloppy SPF record, and no DKIM is a strong hint.

Regards,
John Levine, [email protected], Taughannock Networks, Trumansburg NY
Please consider the environment before reading this e-mail. https://jl.ly
_______________________________________________
mailop mailing list
[email protected]
https://list.mailop.org/listinfo/mailop

Reply via email to