This repository has been archived by the owner on Apr 23, 2023. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 8
Attacks on reporting URIs as mentioned in RFC 7489 #11
Comments
I believe this processor should not be the primary location to combat most denial-of-service, false reports, or malformed reports. Addressing malformed reports is still appropriate, but denial-of-service and false reports are better handled elsewhere where additional context is available. Deliberate malformed reports
High-volume denial-of-service attacks
Deliberate false reports
|
Updated matrix with your feedback
|
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
RFC7489 mentions a number of threats against DMARC reporting URI's in chapter 12.2.
Below is a short discussion of the current mitigation scope.
Any other threats we should address?
The text was updated successfully, but these errors were encountered: