Gmail User wrote:
> I seem to be stuck on what proper permissions are for qmail-dk setup.
> I get a dreaded
> qmail-smtpd: qq hard reject (qmail-dk: Couldn't
> read signature file for signing. (#5.3.0))
> error message.
> My signature files are under
> /var/qmail/control/domainkeys
> The signature line I used in tcp.smtp was
> DKSIGN="/var/qmail/control/domainkeys/%/private"
> (since removed, since it is prod. server)
> The binaries permissions are
> -rwx--x--x  1 qmailq qmail  45832 May 19  2007 qmail-dk
> lrwxrwxrwx  1 root   root      23 Jul 28  2007 qmail-queue ->
> /var/qmail/bin/qmail-dk
> -rws--x--x  1 qmailq qmail  24792 May 19  2007 qmail-queue.orig
> and signature files (this is the latest permissions I tried; original
> were different)
> -r--r----- 1 qmailq qmail  400 Feb 19 21:19 private
> -rw-r--r-- 1 qmailq qmail  142 Feb 19 21:19 public.txt
> DNS is setup and checks out with the testers.
> Any ideas on how to troubleshoot this further?
> TIA,
> Ed

Hey Ed,

Your 'private' file should be root:vchkpw. I have the same ownership on all
of the /var/qmail/control/domainkeys folders and files.
# chown root:vchkpw /var/qmail/control/domainkeys/*

-Eric 'shubes'

