On 11 Feb 2021, at 10:25, Benny Pedersen wrote:

On 2021-02-11 15:12, Bill Cole wrote:
On 11 Feb 2021, at 4:32, Eugene Podshivalov wrote:

Is it safe enough nowadays to drop dmarc failed incoming mail with
opendmarc?

No. It very likely never will be, particularly as long as Sendmail is
in widespread use.

why ?

is it the 8bitmime problem signing 8bitmime content ?, or other problems ?

reference amavisd how to dkim sign

Sendmail will modify headers after Milter actions. See confMUST_QUOTE_CHARS in cf/README and the README for dkimpy-milter for details. If a message is signed without doing a preliminary Sendmail-like fixup of To and Cc headers, Sendmail may break the signature.

--
Bill Cole
[email protected] or [email protected]
(AKA @grumpybozo and many *@billmail.scconsult.com addresses)
Not Currently Available For Hire

Reply via email to