Murray S. Kucherawy wrote: > On Tue, 13 Nov 2007, Alin N�~Cstac wrote: >> The host from which I've run the telnet test is not present in the >> peerlist nor internalhosts. > > That will prevent signing. You should set up an internal hosts list > and in that list should be all IP blocks, hosts or domains from which > SMTP traffic will come that should be signed. By default that list > only contains "localhost" and "127.0.0.1", so if your telnet test or > mail being sent isn't coming from there then the filter won't sign it. The signing part works like a charm, nothing wrong here. My test had a different purpose. I wanted to see if my MTA will reject spoofed messages (messages that appear to come from my users, but are received over unauthenticated SMTP sessions , from IP addresses outside peerlist/internalhosts and without a valid DKIM-Signature).
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Still grepping through log files to find problems? Stop. Now Search log events and configuration files using AJAX and a browser. Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________ dkim-milter-discuss mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/dkim-milter-discuss
