| To: | Qmail mailing list <qmail@list.cr.yp.to> |
|---|---|
| Subject: | Re: Domain Key signature on bounce messages? |
| From: | Kyle Wheeler <kyle-qmail@memoryhole.net> |
| Date: | Tue, 20 Feb 2007 11:04:32 -0700 |
| Comment: | DomainKeys? See http://antispam.yahoo.com/domainkeys |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | gmail-qmail@securepoint.com |
| Delivered-to: | sp.com.list@gmail.com |
| Delivered-to: | mailing list qmail@list.cr.yp.to |
| Domainkey-signature: | a=rsa-sha1; q=dns; c=nofws; s=default; d=memoryhole.net; b=ZL/tm4rTnQw+yay776IFXSwV8xSp8dg+Rq9xMESkzrazx1f5tcQ0RzLPYmWt4Vdixmiimzjw5cg710AJPKxJxwQTxU9YNuY6eqoL2wtMJZzeIg5KDXX0RyoMZ28RVtVcxlzgDncifBUoySUEblFw/LkI1/+JT1gTT6Jy8Z6vNHo= ; |
| Domainkey-status: | good |
| In-reply-to: | <p06240608c1fc25a65d43@norm.jmatt.net> |
| Mail-followup-to: | Qmail mailing list <qmail@list.cr.yp.to> |
| Mailing-list: | contact qmail-help@list.cr.yp.to; run by ezmlm |
| References: | <p06240608c1fc25a65d43@norm.jmatt.net> |
| User-agent: | Mutt/1.5.13 (2007-02-12) |
On Friday, February 16 at 10:32 PM, quoth Matt Simpson: Has anybody tried to make qmail sign bounce messages? How about moving the DK-signing to qmail-remote? I haven't tried it, but I've seen things like this: http://test.frob.com.au/qmail/patches/qmail-1.03-remote-verh-dk.patch I tried setting the DKSIGN and QMAILQUEUE variables in my qmail-send startup script. That worked; bounce messages got signed. Unfortunately, it caused legitimate messages to get bounced (but at least the bounces were signed.) The problem seemed to occur with messages that were forwarded or delivered via an alias. They were bounced with a message saying:Unable to forward message: mail server permanently rejected message (#5.3.0). Hmmm, find out why DK is rejecting those. In the default qmail-dk, that message will be generated when: 1. verifying messages with bad DK syntax 2. Unreadable control files 3. dk_sign/dk_verify library functions return NULLOf the three, the only one you can really do anything about is make sure that all the various pieces/users of qmail can read the qmail-dk control files. ~Kyle --It is a dogma of faith that the demons can produce wind, storms, and rain of fire from heaven.
-- St. Thomas Aquinas
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: qmail - daemontools - tcpserver on Solaris 10, DAve |
|---|---|
| Next by Date: | Re: Domain Key signature on bounce messages?, Matt Simpson |
| Previous by Thread: | Domain Key signature on bounce messages?, Matt Simpson |
| Next by Thread: | Re: Domain Key signature on bounce messages?, Matt Simpson |
| Indexes: | [Date] [Thread] [Top] [All Lists] |