On 2022-01-25 20:26, Dan Mahoney wrote:
Sorry for the noise, attempting to validate a DKIM issue
Authentication-Results: lists.isc.org;
dkim=fail reason="signature verification failed" (2048-bit key;
unprotected) header.d=isc.org header.i=@isc.org header.b=E7VfrLLS
unprotected means
> On Jan 25, 2022, at 8:50 AM, Benny Pedersen wrote:
>
> On 2022-01-25 17:45, Greg Choules wrote:
>> Hello.
>
> Authentication-Results: lists.isc.org;
> dkim=fail reason="signature verification failed" (1024-bit key;
> unprotected) header.d=isc.org header.i=@isc.org header.b=q/vOEba5;
Sorry for the noise, attempting to validate a DKIM issue
___
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe
from this list
ISC funds the development of this software with paid support subscriptions.
Contact us at
testing, please ignore
___
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe
from this list
ISC funds the development of this software with paid support subscriptions.
Contact us at https://www.isc.org/contact/ for more
Try using a larger key, at least 2048 bits.
Check all your DNS entries and make sure everything matches correctly, MX, A,
reverse, etc.
Check to see if your hostname used in the HELO/ELHO process matches what is in
DNS.
Regards,
Eduard Tieseler
Network Operations Director
4050 Truxel Road
On 2022-01-25 17:45, Greg Choules wrote:
Hello.
Authentication-Results: lists.isc.org;
dkim=fail reason="signature verification failed" (1024-bit key;
unprotected) header.d=isc.org header.i=@isc.org header.b=q/vOEba5;
dkim=fail reason="signature verification failed" (1024-bit key;
Hello.
___
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe
from this list
ISC funds the development of this software with paid support subscriptions.
Contact us at https://www.isc.org/contact/ for more information.
Found it my problem.
I used to create the CDS records using a binary that has now been
withdrawn by ISC (around November/December 2021) and now use...
dnssec-dsfromkey -C $key
...except I was running that on all keys - including ZSK's...
I have a bash shell script that does the signing.
8 matches
Mail list logo