Re: [Newbie question] DKIM key invalid, DNS well configured

From: Daniel Black <daniel.subs_at_internode.on.net>
Date: Wed, 29 Apr 2015 16:37:53 +1000

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On 26/04/15 01:30, Mauricio Tavares wrote:
> On Sat, Apr 25, 2015 at 12:28 PM, Eschnigma <eschnigma_at_openmailbox.org
> wrote:
>> Hello everyone
>>
>> This is my first time setting up a Postfix server system.
>> On a technical level, everything works out fine - Postfix is configur
ed well and
>> e-mails reach their destinations.
>>
>> However, they can't make it past spam filters, partly because DKIM is
n't
>> configured.
>>
>> I've tried twice following the instructions on this page:
>> http://www.stevejenkins.com/blog/2011/08/installing-opendkim-rpm-via-
yum-with-postfix-or-sendmail-for-rhel-centos-fedora/
>> ... but Gmail still refuses, and OpenMailbox still marks as spam.
>>
>> A reported generated by sending to test_at_allaboutspam.com tells me the
>> following:
>>
>> "Email contains invalid DKIM/Domain Keys Signature. Published Domain
Keys
>> policy does not specify whether to accept/reject such emails. Signing
 your
>> Outbound emails and clearly specifying a policy to accept signed emai
ls will
>> minimize chances of your Email being considered as SPAM. "
>>
>> The system is Fedora 20, linked to domain makeandshiftjewellery.com a
t
>> 87.121.52.58, and the public key is the following:
>>
>> [userhidden_sorryiamparanoid_at_makeandshiftjewellery ~]$ sudo cat
>> /etc/opendkim/keys/makeandshiftjewellery.com/default.txt

having this text file doesn't make it appear in dns.

>>
>> Thank you!
>>
> Are you sure you have it properly configured? Did you run the
> tests suggested in the url you provided?
>
>

the following suggests its not in DNS or you've used a different
selector or domain name:

$ dig -t txt default._domainkey.makeandshiftjewellery.com

; <<>> DiG 9.9.4-P2-RedHat-9.9.4-18.P2.fc20 <<>> -t txt
default._domainkey.makeandshiftjewellery.com
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 31282
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;default._domainkey.makeandshiftjewellery.com. IN TXT

;; AUTHORITY SECTION:
makeandshiftjewellery.com. 1800 IN SOA dns1.name-services.com.
info.name-services.com. 2002050701 10800 3600 604800 3600

;; Query time: 313 msec
;; SERVER: 192.168.1.254#53(192.168.1.254)
;; WHEN: Wed Apr 29 16:31:47 AEST 2015
;; MSG SIZE rcvd: 133

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEcBAEBCAAGBQJVQHxBAAoJEMXeEgVQ15xMhXoH/2Pb2TAYvT+Etr9S83knZ0/r
xScd4PY5IEgknGgDfAl060qL20IKlTC2NUsqYCsjHMGYLPplq8HJVhNV+CLXbEve
OOKcksl6Ve+4j/DUIroUezx9SDL63VEUkCODjTyAFMBFBbCfSydRTdoZ6v8oIfuW
/0SiBfP9b2bV2EYTgc0T5r4/7wRnjtgi1oFbfIBFI4lRxgiRBOJGGBxFFR7/7/cR
i5QF9W2Qrtzi7RV1AqsmEluOUoJJ1big2g5wYLiUkKkFALhoFll6BKcGlQwH94F3
DKydptMWmXahQqXL1/OYr9F/SWm1l7PmL//68IF4eIUOBOUMO623Vw7FrtZCj8w=
=mMgs
-----END PGP SIGNATURE-----
Received on Wed Apr 29 2015 - 06:38:08 PST

This archive was generated by hypermail 2.3.0 : Wed Apr 29 2015 - 06:45:03 PST