On Fri, 11 Apr 2008, Hadar Pedhazur wrote:
> Only in that situation, I get an extra line in maillog:
>
> Apr 11 15:52:01 new dkim-filter[24897]: 1570F61663A
>       SSL error:04077068:rsa routines:RSA_verify:bad signature

This means the signature verification got as far as running the RSA code 
against the signature and hash.  There weren't syntax or other errors that 
prevented it from getting that far.  Upon running that function, a failure 
resulted, which means the hash and the signature didn't match the key.

The absence of that error means the signature was rejected for other 
reasons.

> So, the message leaves my server signed, goes to thirdparty.com, the 
> alias for you kicks in and comes back to [EMAIL PROTECTED], so it gets 
> verified, and then the SSL error kicks in.

Right, that only happens when your side is doing the verifying.  An error 
reported by some other site can't appear in your logs.

-------------------------------------------------------------------------
This SF.net email is sponsored by the 2008 JavaOne(SM) Conference 
Don't miss this year's exciting event. There's still time to save $100. 
Use priority code J8TL2D2. 
http://ad.doubleclick.net/clk;198757673;13503038;p?http://java.sun.com/javaone
_______________________________________________
dkim-milter-discuss mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/dkim-milter-discuss

Reply via email to