[sanesecurity] Re: dont break dkim please

  • From: David B Funk <dbfunk@xxxxxxxxxxxxxxxxxxxxx>
  • To: sanesecurity@xxxxxxxxxxxxx
  • Date: Wed, 16 Mar 2016 13:32:29 -0500 (CDT)

On Wed, 16 Mar 2016, Benny Pedersen wrote:

Authentication-Results: turing.freelists.org; dkim=none (no signature);
        dkim-adsp=fail (insecure policy)

:(

Benny,

It's their subject munging that breaks your dkim signature.

Try creating your message with that '[sanesecurity]' tag already in your subject
so that will be incorporated in your dkim signature.
(that or exclude the subject header from your dkim signatures).

This same issue will arise with any signed message sent to any list that insists on doing subject munging.

I ran into a similar issue with mail relaying thru a MS Exchange server, it insisted on stripping the numeric timezone value from the Date header field thus breaking dkim signatures.


--
Dave Funk                                  University of Iowa
<dbfunk (at) engineering.uiowa.edu>        College of Engineering
319/335-5751   FAX: 319/384-0549           1256 Seamans Center
Sys_admin/Postmaster/cell_admin            Iowa City, IA 52242-1527
#include <std_disclaimer.h>
Better is not better, 'standard' is better. B{

Other related posts: