RFC 6376 does not define what happens when there are multiple TXT records for _domainkey selectors.

Some implementations allow this but Yahoo doesn't. It's considered a permanent failure.

In my case I accidentally added a second _domainkey TXT RR with an empty "" value and only noticed this when email was rejected by DMARC because the SPF domain was different and DKIM was failing.


I've yet to find a comprehensive DMARC tester that will handle all of the nuances like RFC5322.From and RFC5321.MailFrom needing to be aligned before SPF can be considered...

--
Simon Arlott
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to