48 ms·
Where does it say that? As per rfc7489 4.2: A message satisfies the DMARC checks if at least one of the supported authentication mechanisms: 1. produces a
by kro 5y ago
Where does it say that? As per rfc7489 4.2:
A message satisfies the DMARC checks if at least one of the supported authentication mechanisms:
1. produces a "pass" result
Personally I did not test yet what a DMARC result 1 fully failing check produces.
I can say however that only 1 successful identifier-alignment criteria (and the other credential being valid but not aligned) is enough for an overall pass.
Of course the receiving mailserver is free to enforce a strict DKIM&SPF requirement aside the DMARC check/spec. If your question is why that would be necessary, I'd love to hear the reason aswell
- pracer 5y agoAs mentioned above, I think it is due to the fact that SPF may be too broad, as in softfail SPF (defined here https://datatracker.ietf.org/doc/html/rfc7208#section-2.6.5 https://datatracker.ietf.org/doc/html/rfc7208#section-2.6.5). Based on the RFC, for the rest of possible SPF configurations (more strict), SPF record would be enough. But I am guessing based on the RFC document and my experience.