Dear Maintainer I think I got it. Maybe updating the manpage would be very helpfull for other people who stumble over the same problem.
DMARC needs to do an SPF check. Well I have milter-greylist already performing SPF check, so I configured what I tought would make opendmarc ignore the SPF check and assuming an email that went that far already passed SPF check (which is true in my case). Now I understand, opendmarc need to do SPF check itself. Only this way the result ever returns 'pass'. SPFSelfValidate true Problem solved. I wonder if I could make milter-greylist to create a header which would satisfy opendmarc but I could not find any documentation of the Authentication-Result: header. -Benoît-