Invalid DKIM signatures in this list

Victor Sudakov vas at mpeks.tomsk.su
Tue Nov 27 02:06:57 UTC 2018


Trond Endrestøl wrote:
>
>> Dear Colleagues,
>>
>> I have noticed that the Mailman which manages this list keeps the sender's
>> "DKIM-Signature:" header intact but modifies the body of the message by adding
>> a footer.
>
>Are you sure?

Absolutely. You can review this message to the list as a recent example: 
http://termbin.com/rdsk

>
>When I received your message, the hash was made up using Message-ID,
>Subject, To, From, Date, and In-Reply-To. I failed to find the latter
>field.

What "latter field" are you talking about? I'm talking about the *body*
of the message being tampered with. The hash of the *body* is also 
signed and present in the DKIM-Signature.


-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
2:5005/49 at fidonet http://vas.tomsk.ru/


More information about the freebsd-questions mailing list