Re: verify failed for dnssec enabled senderdomain

From: Andreas Schulze <sca_at_andreasschulze.de>
Date: Mon, 22 Nov 2010 22:05:10 +0100

Am 22.11.2010 21:51 schrieb Andreas Schulze:
I just added trustanchorfile with this content to opendkim.conf.
> t-isa.de. 3600 IN DS 18459 7 1 9174d68d1e6bb922a4afe6bf98ca7d20c3121fd3

> Authentication-Results: 9645f8.dyndns.org/3432BFEB8; dkim=permerror
> (verification error: multiple DNS replies for
> `2009._domainkey.t-isa.de'; insecure key) header.i=_at_t-isa.de
> header.b=ZrcD7FFu; dkim-adsp=none (insecure policy)

Now the header looks like this:

Authentication-Results: 9645f8.dyndns.org/348A2FEB8; dkim=permerror
        (verification error: multiple DNS replies for
        `2009._domainkey.t-isa.de'; secure key) header.i=_at_t-isa.de
        header.b=cNci/C66; dkim-adsp=none (secure policy)

Notice the "secure key" and "secure policy" !!!
but still no valid verify:-(

I have "Diagnostics yes" in receivers opendkim
but DiagnosticDirectory is still empty.

Andreas

-- 
########################################################################
#
# Andreas Schulze
# https://andreasschulze.de
# 
# GnuPG Key-ID: A7DBA67F, https://andreasschulze.de/sca.asc
# GnuPG Fingerprint: 14C1 39A8 CE6D 6BE0 28C6 5652 03B5 6793 A7DB A67F
#
# $Id: .signature,v 1.3 2007-12-27 21:13:36 sca Exp $
########################################################################
Received on Tue Nov 23 2010 - 00:08:46 PST

This archive was generated by hypermail 2.2.0+W3C-0.50 : Tue Nov 23 2010 - 02:50:01 PST