LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 12-08-2018, 06:50 AM   #1
bitfuzzy
Member
 
Registered: Nov 2003
Location: NY
Distribution: slackware
Posts: 464

Rep: Reputation: 133Reputation: 133
Sendmail with OpenDMARC


Environment:
Slackware 14.1 with Sendmail
DNS has been setup with DKIM, SPF, DMARC, and adsp for months

I've installed OpenDMARC in the hopes to drop spoofed emails.
Since I'm still testing, reporting has not been configured yet.

OpenDMARC is configured with:

Code:
SPFSelfValidate true
HistoryFile /var/run/opdndmarc/opendmarc.dat
IgnoreAuthenticated clients true
IgnoreHosts /usr/local/etc/opendmarc/ignore.hosts
RejectFailures false
The OpenDMARC dat file indicates that it's identifying message properties correctly. However all messages are being delivered

The expected behavior was for the sending domains handling disposition (Reject/Quarantine/None) for failed alignment to be followed if it exists

For example:

My adsp record indicates that messages that fail alignment should be rejected

If I send myself a message from a hosted domain, its detected as being local and is delivered. Which is correct

When I use a external server and forge a message from myself to myself, It fails alignment (correct) and is delivered (incorrect)

What am I missing to get message handling according to disposition working??
 
Old 12-08-2018, 10:59 AM   #2
bitfuzzy
Member
 
Registered: Nov 2003
Location: NY
Distribution: slackware
Posts: 464

Original Poster
Rep: Reputation: 133Reputation: 133
After finally finding a little information on the process, it appears that setting

Code:
RejectFailures false
to

Code:
RejectFailures true
might actually answer the question

The only thing I hate more than poorly documented software, is poorly worded comments regarding functions :\

I'm testing now, but given it's Saturday mail flow is low so it'll take a while until I get enough traffic to verify variances
 
Old 12-09-2018, 07:54 AM   #3
bitfuzzy
Member
 
Registered: Nov 2003
Location: NY
Distribution: slackware
Posts: 464

Original Poster
Rep: Reputation: 133Reputation: 133
Despite the wording within the config files comments, un-commenting
Code:
RejectFailures
and setting it to true will cause messages to be Rejected or Quarantined based on the Domains DMARC disposition setting "IF" present. If the Disposition is "None" then the message gets delivered
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Ubuntu 14.04 LTS Email Server How to Configure Opendmarc mroussin51 Linux - Server 0 05-15-2016 07:45 AM
Sendmail Sendmail Sendmail lmcilwain Fedora 0 02-14-2006 02:01 PM
Sendmail Error while sendmail mail palavsachin27 Linux - Networking 1 01-22-2003 04:14 PM
Sendmail - RunAsUser=sendmail:mail/What files to i have to change ForumKid Linux - Security 45 01-18-2002 11:47 AM
sendmail (dont just ignore it 'cause its got sendmail in the subject :P) GnomeKing Linux - Networking 1 11-12-2001 09:57 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 07:38 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration