[mailop] opendkim bad signature data from mx.mailop.org

2020-11-06 Thread Mary via mailop
Hello everyone, Anyone knows why emails from the list are rejected by opendkim? Here is a short log from mx.mailop.org: postfix/postscreen[18765]: CONNECT from [91.132.147.157]:56468 postfix/postscreen[18765]: PASS OLD [91.132.147.157]:56468 postfix/smtpd[18774]: connect from mx.mailop.org[91.

Re: [mailop] O365 contact (or suggestions)

2020-11-06 Thread Jesse Thompson via mailop
It's more about Azure AD, so getting the case routed to that team is probably best. Typically, you need premier support to get decent engagement from Microsoft. I'm not sure what kind of process they have to prove tenant ownership in that situation, but I imagine it's a manual sort of verifica

Re: [mailop] O365 contact (or suggestions)

2020-11-06 Thread Simon Burke via mailop
Thank you for that. The problem was, that all three of their global admin accounts had their privileges removed at the same time. We've since managed to get back one of the accounts elevated again, and gone round enforcing MFA. We're currently trying to establish how it happened. As we can't fin

Re: [mailop] [EXTERNAL] Re: O365 contact (or suggestions)

2020-11-06 Thread Howard F. Cunningham via mailop
HI Simon If you are purchasing Office 365 through Pax8 (or Ingram Micro/Arrow/TechData or other distributors) and you properly set them up as Global Administrator/Helpdesk administrator, they have access to some of the Microsoft backend and may be able to help you. hc Howard Cunningham, MCP

Re: [mailop] opendkim bad signature data from mx.mailop.org

2020-11-06 Thread SM via mailop
Hi Mary, At 08:05 AM 06-11-2020, Mary via mailop wrote: Anyone knows why emails from the list are rejected by opendkim? [snip] On-BadSignature reject The message body is modified as it goes through the list. The DKIM signature verification fails because of that. The above config

Re: [mailop] opendkim bad signature data from mx.mailop.org

2020-11-06 Thread Graeme Fowler via mailop
On 6 Nov 2020, at 17:14, SM via mailop wrote: > The message body is modified as it goes through the list. Hrm. Something for us to look at over the weekend - we should be signing the email with the list’s DKIM config, rather than necessarily passing the original signature unaltered. Obviously,

Re: [mailop] opendkim bad signature data from mx.mailop.org

2020-11-06 Thread Robert L Mathews via mailop
On 11/6/20 8:05 AM, Mary via mailop wrote: > Here is my opendkim configuration (/etc/opendkim.conf): > ... > On-BadSignature reject Aside from anything else, you shouldn't do this. It violates the rule at the bottom of RFC 6376, section 6.3: If the email cannot be verified, then it SHOU

Re: [mailop] opendkim bad signature data from mx.mailop.org

2020-11-06 Thread John Levine via mailop
In article <7344ec56-6b55-4040-a842-42ec4e488...@graemef.net> you write: >On 6 Nov 2020, at 17:14, SM via mailop wrote: >> The message body is modified as it goes through the list. > >Hrm. Something for us to look at over the weekend - we should be signing the >email with the list’s DKIM config,