On 7/25/22 16:50, Syafril Hermansyah via Mdaemon-L wrote:
Coba begini saja, built ulang DKIM key dan update ke Name Server
(authoritative DNS server) domain persada.id.
DKIM yang lama masih 1024 bit, kalau MD baru mestinya akan generate
DKIM 2048 bit.
Saya sudah built ulang pak, saya tes lagi tapi malah permanent error
DKIM nya.
Terlampir disampaikan file hasil test, dan dkim record yang saya
tambahkan di NS,
karena dkim key nya tidak bisa saya masukan sekaligus maka saya
tambahkan seperti di scrren capture.
DKIM key 2048 bit harus dimasukkan sekaligus, dalam 1 record (single line).
Yang penting DNS server yang digunakan harus support 2048 bit.
Coba tanya ke DNS hoster (biznetgio.com), apakah ns1.neohosting.id
mendukung 2048 bit.
Hostmaster bisa dihubungi di [email protected].
Bisa juga tanya ke support team nya.
Pilihan lain, tidak usah diaktifkan DKIM.
Untuk itu perlu diubah DMARC recordnya agar DMARC tidak align dengan
DKIM, cukup align dengan SPF saja (DMARC Identifier for SPF only).
https://www.mail-archive.com/[email protected]/msg47356.html
_dmarc.persada.id: v=DMARC1; p=none
Received-SPF: pass (appmaildev.com: domain of
[email protected] designates 103.150.114.156 as
permitted sender) client-ip=103.150.114.156
Authentication-Results: appmaildev.com;
dkim=permerror header.d=persada.id;
spf=pass (appmaildev.com: domain of
[email protected] designates 103.150.114.156 as
permitted sender) client-ip=103.150.114.156;
dmarc=pass (adkim=r aspf=r p=none) header.from=persada.id;
DMARC diubah menjadi
_dmarc.persada.id. TXT "v=DMARC1; p=reject; aspf=s; sp=none;
rua=mailto:[email protected]"
--
syafril
--------
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 22.0.2 Beta B
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.
Learning without thought is labor lost; thought without learning is
perilous.
--- Confucius (551 BC - 479 BC), The Confucian Analects
--
--[mdaemon-l]----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia
Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke [email protected]
Henti Langgan: Kirim mail ke [email protected]
Versi terakhir: MDaemon 22.0.1, SecurityGateway 8.5.2