Murray S. Kucherawy wrote:
> On Tue, 13 Nov 2007, Alin N�~Cstac wrote:
>> The host from which I've run the telnet test is not present in the
>> peerlist nor internalhosts.
>
> That will prevent signing.  You should set up an internal hosts list
> and in that list should be all IP blocks, hosts or domains from which
> SMTP traffic will come that should be signed.  By default that list
> only contains "localhost" and "127.0.0.1", so if your telnet test or
> mail being sent isn't coming from there then the filter won't sign it.
The signing part works like a charm, nothing wrong here.
My test had a different purpose. I wanted to see if my MTA will reject
spoofed messages (messages that appear to come from my users, but are
received over unauthenticated SMTP sessions , from IP addresses outside
peerlist/internalhosts and without a valid DKIM-Signature).

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
dkim-milter-discuss mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/dkim-milter-discuss

Reply via email to