Hey, it was just a guess. ;) It's kinda hard to tell what exactly is
happening with the johndoe and xxx's.

It appears then that *whoever* posted to the list has the described
(mis-)configuration (still just a guess). This error text corresponds to
codes D and F (see
http://wiki.qmailtoaster.com/index.php/Domainkeys#DKVERIFY). If you want to
accept these messages, remove these codes from your DKVERIFY variable.

Note, qmail-dk does *not* check the t=y code for the sender's domain when
checking incoming messages (according to Alexey).

slamp slamp wrote:
> the only problem with your statement is that i do not send any messages
> from my domain to the toaster list. ive subscribed it to the toaster
> list so i can get a constant e-mail flow.
> 
> On 3/6/07, *Eric Shubes* <[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>> wrote:
> 
>     slamp slamp wrote:
>     > Can anyone tell me why this is so?
>     >
>     > Return-Path: <>
>     > Received: (qmail 4571 invoked for bounce); 22 Feb 2007 13:56:12 -0000
>     > Date: 22 Feb 2007 13:56:12 -0000
>     > From: [EMAIL PROTECTED]
>     <mailto:[EMAIL PROTECTED]>
>     > <mailto:[EMAIL PROTECTED]
>     <mailto:[EMAIL PROTECTED]>>
>     > To: [EMAIL PROTECTED]
>     <mailto:[EMAIL PROTECTED]>
>     > <mailto:[EMAIL PROTECTED]
>     <mailto:[EMAIL PROTECTED]>>
>     > Subject: failure notice
>     >
>     > Hi. This is the qmail-send program at ns1.qmailtoaster.com
>     <http://ns1.qmailtoaster.com>
>     > <http://ns1.qmailtoaster.com <http://ns1.qmailtoaster.com>>.
>     > I'm afraid I wasn't able to deliver your message to the following
>     addresses.
>     > This is a permanent error; I've given up. Sorry it didn't work out.
>     >
>     > < [EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>
>     <mailto:[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>>>:
>     > 69.xxx.xx.xxx failed after I sent the message.
>     > Remote host said: 554 DomainKeys verify status: no key       (#5.3.0)
>     >
>     >
>     > I thought my tcp.smtp had a safe default. Should it be
>     > DKVERIFY="dEgIJKfh" instead? What is the safest rule?
>     >
>     > # cat tcp.smtp
>     > 127.:allow,RELAYCLIENT=""
>     > 172.16.133.3:allow,RELAYCLIENT="",SENDER_NOCHECK="1"
>     > 208.11.75.2:allow,SPFBEHAVIOR="1"
>     > 216.90.171.2:allow,SPFBEHAVIOR="1"
>     >
>     
> :allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",DKVERIFY="DEgIJKfh",QMAILQUEUE="/var/qmail/bin/simscan",DKQUEUE="/var/qmail/bin/qmail-
> 
>     > queue.orig",NOP0FCHECK="1"
>     >
>     >
>     # dig _domainkey.mydomain.com TXT
> 
>     I'm guessing that your DNS record indicates that messages from your
>     domain
>     should be signed, but you have no DKSIGN variable in your tcp.smtp, so
>     messages don't have signatures.
> 
>     --
>     -Eric 'shubes'
> 


-- 
-Eric 'shubes'

---------------------------------------------------------------------
     QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to