35
loading...
This website collects cookies to deliver better user experience
$ cd /etc/rspamd/local.d
$ printf "\
allow_username_mismatch = true;\n\
path = \"/etc/ssl/(...)/dkimproxy-out-key.pem\"\n\
selector=\"dkimout-selector1\"" |\
doas tee dkim_signing.conf
$ cat dkim_signing.conf
allow_username_mismatch = true;
path = "/etc/ssl/(...)/dkimproxy-out-key.pem\"
selector="dkimout-selector1"
$ doas nvim /etc/mail/smtpd.conf
- listen on lo0 port 10028 tag DKIM
(...)
listen on lo0 \
port submission \
received-auth mask-src \
+ filter { "rspamd" } \
tag MSA
listen on egress \
port submission \
tls-require \
pki (...) \
auth <passwd> \
received-auth mask-src \
+ filter { "rspamd" } \
tag MSA
(...)
action "relay" relay
(...)
- action "relay_dkim" relay host smtp://127.0.0.1:10027
(...)
- match tag DKIM for any action "relay"
- match tag MSA from any auth for any action "relay_dkim
+ match tag MSA from any auth for any action "relay"
filter { "rspamd" }
(string array)filter rspamd
(name without quotations)$ doas rcctl stop dkimproxy_out
$ doas rcctl check dkimproxy_out
dkimproxy_out(failed)
$ doas rcctl restart {rspamd, smtpd}
rspamd(ok)
rspamd(ok)
smtpd(ok)
smtpd(ok)
# dkimproxy_out
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=(domain); h=subject:to :references:from:message-id:date:mime-version:in-reply-to :content-type:content-transfer-encoding; s=(selector); bh= (...); b=(...)
# Rspamd dkim_signing
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=(domain); s=(selector); t=(...); h=from:from:reply-to:subject:subject:date:date:message-id:message-id:
to:to:cc:mime-version:mime-version:content-type:content-type:
content-transfer-encoding:content-transfer-encoding; bh=(...); b=(...)
$ doas pkg_delete dkimproxy
dkimproxy-1.4.1p1: ok
Read shared items: ok
--- -dkimproxy-1.4.1p1 -------------------
You should also remove /etc/dkimproxy_out.conf (which was modified)
You should also run /usr/sbin/userdel _dkimproxy
You should also run /usr/sbin/groupdel _dkimproxy
$ doas /usr/sbin/userdel _dkimproxy
$ doas /usr/sbin/groupdel _dkimproxy
$ doas rm /etc/dkimproxy_out.conf # or `doas cp -p /etc/dkimproxy_out.conf /etc/dkimproxy_out.conf.bak`
35