- YEAR=$(date +'%Y')
- DOMTLD=DOM.TLD
- mkdir /etc/opendkim/keys/$DOMTLD
- cd /etc/opendkim/keys/$DOMTLD
- opendkim-genkey -s $YEAR -d $DOMTLD
- chown opendkim:opendkim *.private
- /etc/opendkim.conf
cat /etc/opendkim/keys/$DOMTLD/$YEAR.txt
mail._domainkey IN TXT ( "v=DKIM1; h=sha256; k=rsa; " "p=...
vim /etc/opendkim/SigningTable
*@DOM.TLD ALIAS
vim /etc/opendkim/KeyTable
ALIAS DOM.TLD:YEAR:/etc/opendkim/keys/DOM.TLD/YEAR.private
vim /etc/opendkim/TrustedHosts
127.0.0.1
localhost
10.0.3.0/24
bubuit.net
bubu
bubu.bubuit.net
drupal.bubuit.net
owncloud.bubuit.net
peertube.bubuit.net
jitsi.bubuit.net
lists.bubuit.net
80.109.46.32
/etc/postfix/main.cf
milter_default_action = tempfail
smtpd_milters = unix:/opendkim/opendkim.sock
non_smtpd_milters = unix:/opendkim/opendkim.sock
- usermod -aG opendkim postfix
- sc-restart opendkim postfix
Links
checker
- https://dmarcadvisor.com/de/dkim-check/
- https://protodave.com/tools/dkim-key-checker/