Operations grimoire/Mail/DKIM: Difference between revisions
From Nasqueron Agora
< Operations grimoire | Mail
(→Add a domain: Update instructions per https://devcentral.nasqueron.org/D3551) |
|||
Line 3: | Line 3: | ||
== Add a domain == | == Add a domain == | ||
To create a key with <code>unium</code> as DKIM selector for <domain.tld>: | To create a key with <code>unium</code> as DKIM selector for <domain.tld>: | ||
<source lang="console"> | <source lang="console"> | ||
$ | $ add-dkim-domain domain.tld | ||
</source> | |||
$ | |||
To create a key with another selector: | |||
<source lang="console"> | |||
$ add-dkim-domain domain.tld <selector> | |||
</source> | </source> | ||
Revision as of 20:34, 21 October 2024
Mails are signed with OpenDKIM, an open-source implementation for DKIM.
Add a domain
To create a key with unium
as DKIM selector for <domain.tld>:
$ add-dkim-domain domain.tld
To create a key with another selector:
$ add-dkim-domain domain.tld <selector>
Test
Send a mail from to another mail server.
You should see a DKIM pass.
You can also from a mailbox for this domain send a mail to check-authverifier.port25.com
Troubleshooting
Can't load key from … Permission denied
Keys must be readeable to opendkim user.
$ chown opendkim /usr/local/etc/opendkim/keys/*/*.private
DKIM must succeed: as long as this isn't fixed, Postfix won't send mail for this domain.