スライド 1

Similar documents
isocjpDmarcDKIM2.pptx

antispam_conf_ pptx

送信ドメイン認証 導入指南 2018

DNSとメール

antispam_conf_141008_1.pptx


AntiPhishingSeminer_HO.potx

マーケティングメールやビジネスメールにおけるDMARCの活用事例 公開版_3

( )

ENMA とは 送信ドメイン認証の ( 受信側 ) 検証をおこなう milter Sendmail Postfix と連携動作 認証結果をヘッダとして挿入 認証結果ヘッダの例 Authentication-Results: mx.example.jp; spf=pass smtp.mailfrom=

PowerPoint プレゼンテーション

H27組織改定

PowerPoint プレゼンテーション

antiabuse.gby

PowerPoint プレゼンテーション

AWS からのメール配信の選択肢 1. EC2 上に Mail Transfer Agent (MTA) を構築して配信 2. Amazon Simple Service (SES) の利利 用 3. 外部 配信サービスの利利 用 3. については AWS 特有の 手順はない

Anti-Spam Seminar (IAjapan)

examp examp 1 1 SPF le. jp le. jp DNS IP (MX ) 1) SMTP IP 2) SMTP MAIL FROM SMTP EHLO 3) SPF RR IP 4) 1) 3) 2

untitled


Agenda

第三回総会

2 3


Microsoft PowerPoint - internetweek2011-s03-4-public [互換モード]

橡ボーダーライン.PDF

法人保険( )

1

4 5 4

h01

..0.._ e.qxp



Microsoft PowerPoint - s03_Internetweek _handout [互換モード]

Policy

浦安ライオンズクラブ81獅子吼.indd

<348C8E8D862E696E6464>

untitled

第5回東京都廃棄物審議会

西食堂


フィジカルコンディショニング

PowerPoint プレゼンテーション

支援リスト3/30.xls

untitled

IP ( ) IP ( ) IP DNS Web Web DNS Web DNS DNS 利用者 1 利用者 2 東京都調布市の天気情報を応答 東京都調布市の天気を問い合わせ 北海道旭川市の天気を問い合わせ 北海道旭川市の天気情報を応答 Fig. 1 1 DNS サーバ 東京都調布市の天気情報 We

untitled

MUA (Mail User Agent) MTA (Mail Transfer Agent) DNS (Domain Name System) DNS MUA MTA MTA MUA MB mailbox MB

1 Gumblar Fig. 1 Flow of Gumblar attack. Fig. 2 2 RequestPolicy Example of operation based on RequestPolicy. (3-b) (4) PC (5) Web Web Web Web Gumblar

untitled



SP100 取扱説明書


untitled


untitled

untitled

WS-I Basic Profile 1.0 の概説


カテゴリ変数と独立性の検定

スライド 1

untitled

スライド 1

Google Apps Google Apps for Work Education Government Drive for Work Google Apps Unlimited

Microsoft PowerPoint - s03-水越賢治-IW2011-S3DKIM-3 [互換モード]

電子メール・サービス

IT講習会

/02/ /09/ /05/ /02/ CA /11/09 OCSP SubjectAltName /12/02 SECOM Passport for Web SR

untitled

Cisco Domain Protection ユーザ ガイド

sp c-final

Copyright

DNSSEC の仕組みと現状 平成 22 年 11 月 DNSSEC ジャパン

SMTP FP Mail MX /

/07/ /10/12 I

manual.dvi

名称未設定

Microsoft PowerPoint 第一期_spamPPT_ ppt

ヤマハ ルーター ファイアウォール機能~説明資料~


untitled

+1級・建築計画-06章_cs3.indd

ACS電子ジャーナル利用マニュアル

YU68.ind


¥Í¥Ã¥È¥ï¡¼¥¯¥×¥í¥°¥é¥ß¥ó¥°ÆÃÏÀ

113_0405.indd


2.2 要 望 点 表 1 要 望 点 一 つの 解 決 策 Re:

第3 章 電子認証技術に関する国際動向

amplification attacks とは 送信元を偽装した dns query による攻撃 帯域を埋める smurf attacks に類似 攻撃要素は IP spoofing amp 2006/07/14 Copyright (C) 2006 Internet Initiative Jap

SPECIAL REPORT 2

ScreenOS 5.0 ScreenOS 5.0 Deep Inspection VLAN NetScreen-25/-50/-204/-208 HA NetScreen-25 HA Lite NetScreen-25 NetScreen-50) ALG(Application Layer Gat

C o n t e n t s Top Message

レポート-hyo1-4.ai

untitled

インターネットと運用技術シンポジウム 2016 Internet and Operation Technology Symposium 2016 IOTS /12/1 SMTP AUTH PASSPIE 1,a) 2 3 SMTP AUTH SMTP SMTP AUTH SMTP A


設定例集_Rev.8.03, Rev.9.00, Rev.10.01対応

Transcription:

DMARC Technology Overview

DMARC dkim.jp 2013 3 RFC draft-dmarc-base-00-02.txt p19 20 21 dkim.jp dkim.jp P2

1. DMARC 2. 3. DMARC Record 4. Identifier Alignment 5. ML, 6. ADSP 7. P3

DMARC http://www.dmarc.org/ Domain-based Message Authentication, Reporting and Conformance 2012 1 30 Sender Receiver P4

DKIM SPF P5

DKIM, SPF Sender: SPF pass Receiver: DKIM Receiver SPF DKIM Receiver DKIM, SPF Receiver Sender Receiver P6

3.4. Out Of Scope RFC5322.From display name From: "user@example.org via Bug Tracker" <support@example.com> P7

false positives Sender Receiver RFC draft 3.1. High-Level Requirements P8

P9

SPF hard/softfail, DKIM ADSP DMARC AFRF AFRF draft-ietf-marfauthfailurereport-10 DMARC www.dmarc.org SPF Policy ADSP SPS SPF RFC4408 OR AND DKIM RFC6376 DKIM ATPS RFC6541 SMTP RFC5322 DNS DNSSEC P10

DMARC Sender/Receiver DMARC From RFC5322.From Sender 1. SPF DKIM 2. 3. From 4. DMARC Record DNS TXT 5. Receiver 1. SPF DKIM 2. DMARC Record 3. 4. P11

DMARC 11.2. Determine Handling Policy SPF DKIM From DMARC pass the DMARC mechanism check fail the DMARC mechanism check DMARC / P12 quarantine reject or drop

DMARC Record From DMARC Record From: <info@example.co.jp> _dmarc.example.co.jp TXT v=dmarc1 ; p=none ; rf=afrf ; rua=mailto:reportdmarc@example.co.jp ; ruf=mailto:report-dmarc@example.co.jp v DMARC1 p none, quarantine, reject pct DMARC 0 100 rua URI mailto:aggrep@example.com ruf Failure URI mailto:auth-reports@example.com sp none, quarantine, reject adkim DKIM r, s aspf SPF r, s P13

http://sourceforge.net/projects/opendmarc/ DMARC - Google Apps http://support.google.com/a/bin/answer.py?hl=ja&hlrm=e n&answer=2466563 P14

DMARC Alignment RFC5322.From SPF: spf=pass RFC5321.MailFrom DKIM: dkim=pass d= r relaxed mode : RFC5322.From s strict mode : RFC5322.From a.b.c.d.example.com example.com : http://publicsuffix.org P15

Example 1: SPF in alignment: MAIL FROM: <sender@example.com> From: sender@example.com Date: Fri, Feb 15 2002 16:54:30-0800 To: receiver@example.org Subject: here's a sample Example 2: SPF in alignment parent : MAIL FROM: <sender@example.com> From: sender@child.example.com Date: Fri, Feb 15 2002 16:54:30-0800 To: receiver@example.org Subject: here's a sample Example 3: SPF not in alignment: MAIL FROM: <sender@sample.net> relax: example.com From: sender@child.example.com Date: Fri, Feb 15 2002 16:54:30-0800 To: receiver@example.org Subject: here's a sample child.example.com P16

Example 1: DKIM in alignment: DKIM-Signature: v=1;...; d=example.com;... From: sender@example.com Date: Fri, Feb 15 2002 16:54:30-0800 To: receiver@example.org Subject: here's a sample Example 2: DKIM in alignment parent : DKIM-Signature: v=1;...; d=example.com;... From: sender@child.example.com Date: Fri, Feb 15 2002 16:54:30-0800 To: receiver@example.org Subject: here's a sample Example 3: DKIM not in alignment: DKIM-Signature: v=1;...; d=sample.net;... From: sender@child.example.com Date: Fri, Feb 15 2002 16:54:30-0800 To: receiver@example.org Subject: here's a sample relax: child.example.com example.com P17

SPF DKIM DMARC Record P18 SPF Alignment DKIM Alignment 1 pass pass --- --- --- --- 2 pass pass in in Pass 3 pass --- in --- Pass 4 --- pass --- in Pass --- pass --- Not in Fail DMARC mechanism check fail fail --- --- Fail fail pass --- in Pass ML pass fail Not in --- Fail ML pass pass Not in Not in Fail pass pass Not in Not in Fail fail pass Not in Not in Fail

DMARC mechanism check Fail 1. ML Subject in alignment From DMARC ATPS Bounce RFC5321.MailFrom SPF in alignment Submission 587port envelope From P19

DKIM ADSP DKIM fail SPF ADSP discardable P20

P21