> On Feb 18, 2019, at 2:51 PM, Wietse Venema <wie...@porcupine.org> wrote: > > There is no need to sign bounces for email that you don't receive > but what about non-delivery notifications for mail that is accepted > and then later found to be undeliverable?
In my multi-instance configurations, delivery failure to internal recipients does not happen in the outbound output instance, and the bad news travels outwards through that separate output instance that does the signing. Fragmenting Postfix into task-specific instances makes each instance easier to manage, but requires some thought in the initial design. It ultimately pays in non-trivial configurations, but is probably not for everyone. -- Viktor.