LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 03-08-2024, 12:25 AM   #1
jkaidor
Member
 
Registered: Jun 2008
Location: SF Peninsula
Distribution: slackware
Posts: 33

Rep: Reputation: 23
DKIM Bad RSA Signature


I just installed opendkim on my Slackware box running sendmail. I created the public and private keys, started the opendkim process, and
put the public key in my DNS, and added the filter line in my sendmail.mc. Testing it with dkimvalidator.com, I see that a DKIM header is created; but it has a bad RSA signature.

I'm at a loss as to how to troubleshoot this; the very nature of cryptographic hashes dictates that there's no such thing as "almost working". Either everything is right, or it isn't. If it isn't then the hash will be totally different.

All I can guess is that there's some kind of rewriting happening after the DKIM signature is created. Can anybody supply a clue? Maybe some common sendmail option?
 
Old 03-09-2024, 10:33 AM   #2
jkaidor
Member
 
Registered: Jun 2008
Location: SF Peninsula
Distribution: slackware
Posts: 33

Original Poster
Rep: Reputation: 23
Fixed. It turned out that my public key was wrong. I found it with...

https://dkimvalidator.com

This website gives you a random-ish email address. You go to your mailer and send an email to this address. Then click, and it gives you a voluminous report about the DKIM and SPF characteristics of the email and your
domain.

I copied the public key into a file on my server. Then copied the "key" part of the key file into another file. Then compared the files, first with diff, then by loading them both into a text editor and bouncing back & forth between them. Strangely, the first several characters were the same, and the last several characters also the same. But characters in the middle were different.

I updated the public key in my DNS and all was well.
 
1 members found this post helpful.
Old 03-09-2024, 10:37 AM   #3
jkaidor
Member
 
Registered: Jun 2008
Location: SF Peninsula
Distribution: slackware
Posts: 33

Original Poster
Rep: Reputation: 23
I now have working DKIM, SPF, DMARC & TLS. So I should have good deliverability. At least until the Gods of Email figure out more stuff to throw at me .
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] DKIM Keeps bringing up dkim=neutral (bad format) header.i=@ j.smith1981 Linux - Server 4 08-28-2019 06:26 AM
RSA SecurID: RSA Web Agent, integration of RSA auth page Linux_Kidd General 1 08-28-2013 05:59 PM
LXer: Set Up DKIM For Multiple Domains On Postfix With dkim-milter 2.8.x (CentOS 5.3) LXer Syndicated Linux News 0 09-07-2009 06:20 PM
Sendmail - dkim-filter problem. Test : fail (signature doesn' verify) ethic Linux - Server 0 05-15-2009 01:16 PM
LXer: Set Up DKIM On Postfix With dkim-milter (CentOS 5.2) LXer Syndicated Linux News 0 04-06-2009 12:30 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 07:12 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration