> -----Original Message-----
> From: [email protected] 
> [mailto:[email protected]] On Behalf Of Robert 
> Wysocki
> Sent: Thursday, April 26, 2012 4:08 AM
> To: [email protected]
> Subject: [exim] DKIM verification and envelope-from
> 
> I'm trying to achieve configuration that would verify DKIM signatures
> for known signers.
> Everything works fine until envelope-from address is one of known
> signers. But many spams have envelope-from set differently than From:
> header, eg. [email protected] in envelope-from and
> [email protected] in From: header.
> This enables them to bypass DKIM signature checks and therefor to
> bypass one of the anti-spam mechanisms.
> 
> How can I instruct exim to include From: headers' content in known
> signers checks?

Why wouldn't you base the "known-signer" test on From: instead of the envelope 
sender?

-MSK
-- 
## List details at https://lists.exim.org/mailman/listinfo/exim-users
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/

Reply via email to