Re: [dkim-ops] Test Results for various reflectors

2006-06-08 16:23:23
On Thu, 8 Jun 2006, SM wrote:

Hi Dan,
At 14:34 08-06-2006, Dan Mahoney, System Admin wrote:
Okay. My results for every reflector listed on (with every possible signing mode) are here (and they're DISMAL):

Thanks for the notes on the autoresponders.

Your DKIM signature fails verification.

In any case, no detail is mentioned about how these differ, unless I feel like reading the drafts (and no links are provided, even so it would be a TEDIOUS read).

You can find the drafts of the implementation in the dk/dkim milter tarballs. The latest version of dkim-milter uses ietf-base-01 by default.

I'm guessing there's no space within the spec for a signature to include which spec it was signed to be in compliance with -- and to ignore otherwise, or use the all-important feedback address?

* Can anyone post contact addresses for issues with these reflectors? Ideally we need more info, such as: what testing method they're using, contact address, what standards they support.

You can post dkim-milter questions to the dkim-milter mailing list. I'm copying this email to you as the one you receive from this list will fail verification.

Well, I was more looking for contacts at each individual site running a reflector. Leaving a decaying piece of software out in the open is not a good thing.

Then again, there's always this:

Received: from ( [])
    by (8.13.5/8.13.4) with ESMTP id k589koGh078815
    for <sa-test(_at_)sendmail(_dot_)net>; Thu, 8 Jun 2006 02:46:51 -0700 (PDT)
    (envelope-from danm(_at_)prime(_dot_)gushi(_dot_)org)

That is not running the latest version of their own code (a fairly critical update -- and is ignoring the standard of rebuilding their with an upgrade to sendmail...these things also trouble me.

MTA Version
DKIM Verifier (milter/spamassassin plugin/etc?)
DKIM Identifier Version
DKIM Outbound signature version (which the reply email will be presumably signed with).
