Operations grimoire/Mail/DKIM: Difference between revisions
From Nasqueron Agora
< Operations grimoire | Mail
(Created page with "== Add a domain == To create a key with <code>unium</code> as DKIM selector for <domain.tld>: <source lang="console"> $ mkdir /etc/opendkim/keys/domain.tld $ cd /etc/opendkim/...") |
(→Add a domain: Let's try 2048 keys) |
||
Line 4: | Line 4: | ||
$ mkdir /etc/opendkim/keys/domain.tld | $ mkdir /etc/opendkim/keys/domain.tld | ||
$ cd /etc/opendkim/keys/domain.tld | $ cd /etc/opendkim/keys/domain.tld | ||
$ opendkim-genkey -s unium -d domain.tld | $ opendkim-genkey -s unium -b 2048 -d domain.tld | ||
$ chown opendkim unium.private | $ chown opendkim unium.private | ||
$ cd /etc/opendkim | $ cd /etc/opendkim |
Revision as of 18:33, 21 August 2024
Add a domain
To create a key with unium
as DKIM selector for <domain.tld>:
$ mkdir /etc/opendkim/keys/domain.tld
$ cd /etc/opendkim/keys/domain.tld
$ opendkim-genkey -s unium -b 2048 -d domain.tld
$ chown opendkim unium.private
$ cd /etc/opendkim
$ make clean all
Test
Send a mail from to another mail server.
You should see a DKIM pass.
You can also from a mailbox for this domain send a mail to check-authverifier.port25.com
Troubleshooting
Can't load key from … Permission denied
Keys must belong to opendkim user.
$ chown opendkim /etc/opendkim/keys/*/*.private
DKIM must succeed: as long as this isn't fixed, Postfix won't send mail for this domain.