pg001 29th July 2008 11:03

DKIM With dkim-milter & Domainkeys In Postfix Using dk-milter
Iam running Cento 5.2 perfect server with ISPConfig, with Domainkeys In Postfix Using dk-milter. Everything is running well and perfect, the emails are being signed, thanks for the howto's. I'm just wondering though, can I also implement Postfix DKIM With dkim-milter?

I want to know if it is possible to implement them both and what adjustments I would need to do. Thanks in advance.

topdog 29th July 2008 14:52

You can do both, there are tutorials on doing both here on howtoforge

pg001 29th July 2008 17:28

wow! that's cool, thanks. can you please point me to a link where I could find it?

topdog 30th July 2008 11:13

pg001 30th July 2008 13:06

I followed the how to and I got no errors until on the "Configure Postfix " section I got stucked, here are my concerns:

1. "Append to the existing milters if you have other milters already configured. " -how do I exactly do this?

2. Since I did not know what to do, I added the this code:

smtpd_milters = unix:/var/run/dkim-milter/dkim.sock
non_smtpd_milters = unix:/var/run/dkim-milter/dkim.sock

to the bottom of /etc/postfix/ file. Is this the right way to do it?

3. When I did #2 and started dkim-milter I got this error:

Starting DKIM milter (dkim-filter #0): dkim-filter: smfi_opensocket() failed

thanks in advance... sorry for the bugging, I'm just a linux newbie trying to learn how to setup good email delivery. :)

topdog 30th July 2008 13:09

1. Append means add to what is already there.
3. Check the permissions on the socket file.

pg001 30th July 2008 13:19

this is what I get:


[root@server1 /]# ls -la /var/run/dkim-milter/dkim.sock
srwxrwx--- 1 dkim-milt mail 0 Jul 30 17:20 /var/run/dkim-milter/dkim.sock

is it correct?

topdog 30th July 2008 13:22

Try restarting the dkim-milter and see if u get the error again are you running with selinux enabled ?

pg001 30th July 2008 13:44

the restart did the trick! No I did not have selinux enabled, it was disabled from the start. Here's the restart result:

[root@server1 /]# service dkim-milter restart
Shutting down all DKIM milter (dkim-filter):              [  OK  ]
Cleanup for DKIM milter (dkim-filter #0):
Starting DKIM milter (dkim-filter #0):                    [  OK  ]

I tried sending email to my gmail account but I don't see "Signed by: ..." on the headers, here's how my headers look,

it does not look the same with what's on the howto.

plus when I send email to yahoo I get this errorr on my mail que

postqueue -p
-Queue ID- --Size-- ----Arrival Time---- -Sender/Recipient-------
E7DFB78C4BB      812 Wed Jul 30 18:34:42
(host[] refused to talk to me: 421 Message from (xxx.92.28.183) temporarily deferred - 4.16.50. Please refer to

topdog 30th July 2008 13:54

May be the signing is not taking place look at the original message in gmail and see the headers

To do that click the arror on the reply button.

