[PLUG] Has anyone here used DKIM or Domain Key with their mail server?

Keith Lofstrom keithl at kl-ic.com
Tue Aug 26 00:28:56 UTC 2008


Domain Key from Yah-o-o is being absorbed into the IETF's DKIM standard. 
There is apparently a Perl module that can be added to postfix to
implement this on outbound email.  This is apparently a scheme to
sign emails with the OpenSSL private key so that a recipient MTA
can check it with the site's public key. 

There is a Perl module ( http://dkimproxy.sourceforge.net/ ) that
supposedly implements this.

Questions: (1) Is this worth the effort?  (2) Is it a security risk?
(3) is the dkimproxy module sound?  (4) can you use a self-signed
cert for this, or do you need an official ($$$) cert from places
like Thawte or Verisign?  

Keith

-- 
Keith Lofstrom          keithl at keithl.com         Voice (503)-520-1993
KLIC --- Keith Lofstrom Integrated Circuits --- "Your Ideas in Silicon"
Design Contracting in Bipolar and CMOS - Analog, Digital, and Scan ICs



More information about the PLUG mailing list