> On Nov 27, 2018, at 2:14 PM, Alice Wonder <al...@domblogger.net> wrote:
> 
> I might be wrong about this, but also I seem to recall seeing OpenSSL 1.1.0
> or newer was needed for the Ed25519-sha256 sig support coming in next OpenDKIM
> (and already in their Beta2 release).

Actually, you need 1.1.1 (not 1.1.0) for Ed25519 support.

> Probably not a good idea to start signing that way yet but probably is good
> idea to be able to validate others who adopt early.

But Postfix outsources DKIM to milters, so Postfix itself does not need
the same OpenSSL version as the milter.  Still it is probably saner to
to depend on just the 1.1.1 version across the board.

-- 
        Viktor.

Reply via email to