[kwlug-disc] Anyone know how to set up DNSSEC?

Bob Jonkman bjonkman at sobac.com
Thu Feb 6 03:53:15 EST 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

DKIM (RFC 6376 or STD 76) is still optional for SMTP mail delivery,
and SPF (RFC 4408) is still considered an experimental protocol.
Rejecting a message based on failure (or absence) of SPF is overly
aggressive, and contrary to DKIM ("signature verification failure does
not force rejection of the message"). At best, a message's (lack of)
conformance to DKIM and SPF could be used as a weighting factor to
determine its spamminess.

There's no benefit to you to sign your outgoing messages, at least
until servers start rejecting messages (which makes them
non-conformant to standards). Of course, there is the network effect
that if everyone does DKIM/SPF then the world will be a better place.

The only time my mail server has ever received a delivery failure
notification for not having DKIM or SPF entries was when I tried to
subscribe to the GNUsocial mailing list. Of course, I don't know how
many mail servers are silently dropping my non-DKIM/SPF messages, but
that's contrary to standards too.

TL;DR: Don't worry about it.

- --Bob.

https://tools.ietf.org/html/rfc6376

https://tools.ietf.org/html/rfc4408




On 14-02-06 02:53 AM, Chamunks Arkturus wrote:
> I'm sorry to have mislead I'm fairly comfortable with the command
> line I just use ubuntu server 12.04x lts for my main distro.  I
> definitely don't have the regex capabilities or understanding that
> most of the guys here were raised up through.  Granted I do like
> gui's in some sense that it helps me wrap my head around some
> concepts like I'm attempting to wrap my head around using ldap via
> phpLDAPAdmin BUT this is not the thread for this.  So before I
> derail my own thread.  Is there more information that I should hear
> about this situation?
> 
> 
> 
> _______________________________________________ kwlug-disc mailing
> list kwlug-disc at kwlug.org 
> http://kwlug.org/mailman/listinfo/kwlug-disc_kwlug.org
> 
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (GNU/Linux)
Comment: Ensure confidentiality, authenticity, non-repudiability

iEYEARECAAYFAlLzTXoACgkQuRKJsNLM5ergmwCgki1frovhgo19qTDYIU9+ZzLz
B9kAoN0eoWTBKEG7kjosYtCBb5uzxIyx
=Y9/1
-----END PGP SIGNATURE-----





More information about the kwlug-disc mailing list