[opendmarc-dev] [dmarc-discuss] DMARC On AmazonSES

Murray S. Kucherawy msk at blackops.org
Wed Jul 31 00:27:33 PDT 2013


On Thu, 18 Jul 2013, Andreas Schulze wrote:
> to me that sounds like opendmarc has currently a bug.
>
> -> http://www.dmarc.org/pipermail/dmarc-discuss/2013-July/002048.html
> -> http://www.dmarc.org/pipermail/dmarc-discuss/2013-July/002057.html
>
> I get mails that pass spf and dkim.
> dkim is alligned, spf not. That should be enougth to pass dmarc but opendmarc 
> let the message fail.
>
> can anybody confirm?
>
> Return-Path: <test at e3.emarsys.net>
> Authentication-Results: mta; dmarc=fail 
> header.from=service3.zalando-lounge.de
> Authentication-Results: mta; dkim=pass
>       reason="1024-bit key; unprotected key"
>       header.d=service3.zalando-lounge.de 
> header.i=newsletter at service3.zalando-lounge.de
>       header.b=IWGb3WPX; dkim-adsp=pass; dkim-atps=neutral
> Authentication-Results: mta;
>       spf=pass smtp.mailfrom=<test at e3.emarsys.net> 
> smtp.helo=pmta43117.emarsys.net
> From: Zalando-Lounge <newsletter at service3.zalando-lounge.de>

DKIM is passing and aligned, so this passes DMARC.  If opendmarc claims 
this fails, then the likelihood is that it's not seeing the 
Authentication-Results for DKIM, or not identifying it as one that it 
should trust.  Is TrustedAuthservIDs set correctly?

-MSK


More information about the opendmarc-dev mailing list