Hi,
they use a working DNS record and DKIM keys that were used under ScrollOUT F1 (everything works in ScrollOUT), and in PMG I get DKIM =fail. I tried different options, generated new keys. always the result is one DKIM=fail.
test send mail to gmail.com:
telnet ip 26 - Proxmox PMG - Fortigate - internet - gmail.com
dig +short txt dkim._domainkey
"v=DKIM1; p= MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDEcGpbxzJSsB44qzSlKA2r9kU/ SLNNmpPhflwwr/YIbukrnSCpZSWgBWJhnG2SxHia3hyJfAkflFFWg5tVr3Md3yy4 5vGOGKB5X11iPsPDmYD0Gdp1dxoPbazQhGxfhcN3kH1hL1/94wsBisAzFQ+3Orko umrPjhCTCFhMETriLQIDAQAB"
pmgsh get /config/dkim/selector
200 OK
{
"keysize" : 1024,
"record" : "dkim._domainkey\tIN\tTXT\t( \"v=DKIM1; h=sha256; k=rsa; \"\n\t \"p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDEcGpbxzJSsB44qzSlKA2r9kU/SLNNmpPhflwwr/YIbukrnSCpZSWgBWJhnG2SxHia3hyJfAkflFFWg5tVr3Md3yy45vGOGKB5X11iPsPDmYD0Gdp1dxoPbazQhGxfhcN3kH1hL1/94wsBisAzFQ+3OrkoumrPjhCTCFhMETriLQIDAQAB\" ) ; ----- DKIM key dkim",
"selector" : "dkim"
}
Delivered-To: @gmail.com
Received: by 2002:a05:612c:71f:b0:2ab:412b:e002 with SMTP id ft31csp500797vqb;
Wed, 18 May 2022 04:44:46 -0700 (PDT)
X-Google-Smtp-Source: ABdhPJw13z3iZUTDScc/jtEFrxwi6dj9Ehz/BakOcA/ZfdlGyQhLHPPxhnV1A3zqxgXwyW48lcmv
X-Received: by 2002:a2e:b744:0:b0:253:c8da:746 with SMTP id k4-20020a2eb744000000b00253c8da0746mr2010585ljo.401.1652874286563;
Wed, 18 May 2022 04:44:46 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1652874286; cv=none;
d=google.com; s=arc-20160816;
b=Sf8iGt/YAUn4RsJNCAcA1xsBibZuKXJaLJSVff2nThkb9d8UVkKqovxSNU0aDaQmKy
pqlTa4MssUA0vbv2u+aK4mg2CQOfnMIEuC5TE4pf1thaC7soRakPaf2Hg1utwU85ldIY
yL2+wHjtz/tMGlOVYltH0i9i19VTOWQYT6cCN42Ar1/VEVOmrF1gt8y0Ic5b30gTrpMF
E6cGIBLrH1GS4rPrz7beHA5z1/ywd7auUplMuOER5HmF7mruU/qbWJizulSaVs1mWar3
+kLRFakvq0sPKcBVV6yVlTtsqRAtZ5FjiiCHtY7J0/hT7wGv5kCi+oektTl0lfIT+74I
0DoQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816;
h=from:date:message-id:dkim-signature;
bh=g3zLYH4xKxcPrHOD18z9YfpQcnk/GaJedfustWU5uGs=;
b=mUSrvHvefBzeqY8az0r4scKYnG+EHsPl26/tomJtJQzKAZgxRvS32eYxJmPykII8El
e7luIHyLfn72phkLcozMMFDZE0YAR/1I+ir92HVGDBiAnGyMKsyINsSlryRvAMw4BG6r
xRNu5dzyfBT81ahFyoBzDxcg6OeNyBJAluQyfl9GvFCE2z5D8q+NBMcHrOrHVGfT+hGl
qHpYDTKvnbYrmaFha6kzO0NVpzMakAr1ldhmZj/pfU1o92Qx1p0CX0Fv4kx5mrcleeyW
r+AsjUOyJ8kJYuXWXuR0NqYmMkh0KNiRpfGppDCHeZypTnFA98nSx4dOZw1PaYMAhfym
slKA==
ARC-Authentication-Results: i=1; mx.google.com;
dkim=fail header.i=@mydomain.com header.s=dkim header.b=a1ctMNJo;
spf=pass (google.com: domain of user@mydomain.com designates 6.29.22.12 as permitted sender) smtp.mailfrom=user@mydomain.com;
dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=mydomain.com
Return-Path: <user@mydomain.com>
Received: from mail.mydomain.com (mail.mydomain.com. [6.29.22.12])
by mx.google.com with ESMTP id o25-20020ac24e99000000b004724d727094si1413533lfr.303.2022.05.18.04.44.46
for <@gmail.com>;
Wed, 18 May 2022 04:44:46 -0700 (PDT)
Received-SPF: pass (google.com: domain of user@mydomain.com designates 6.29.22.12 as permitted sender) client-ip=6.29.22.12;
Authentication-Results: mx.google.com;
dkim=fail header.i=@mydomain.com header.s=dkim header.b=a1ctMNJo;
spf=pass (google.com: domain of user@mydomain.com designates 6.29.22.12 as permitted sender) smtp.mailfrom=user@mydomain.com;
dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=user@mydomain.com
Received: from SPNX04 (localhost [127.0.0.1]) by mail.mydomain.com (Proxmox) with ESMTP id 3D8F2141A54 for <user@mydomain.com>; Wed, 18 May 2022 14:44:46 +0300 (MSK)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mydomain.com;
h=cc:from:reply-to:subject:to; s=dkim; bh=g3zLYH4xKxcPrHOD18z9Y fpQcnk/GaJedfustWU5uGs=; b=a1ctMNJoNFYQNPtXKbSXWuC2w4ri97oRg1kLl iQPh/pQl2f0aLd6gXE5C5rNh/fcD6m9gk2c1qTyyy2db4vd+k2vcyCyUq5BLeIJA BciZoRKCOBN/ovfWLBrqIR7df/LwPGtBx8Vj/HGUl0YtqSjozY9T3EPi89O9SrQH mj845E=
Received: from admin.local (IT01.BURG.local [10.10.31.231]) by mail.mydomain.com (Proxmox) with ESMTP id 2F391141A47 for <@gmail.com>; Wed, 18 May 2022 14:44:29 +0300 (MSK)
Message-Id: <20220518114446.3D8F2141A54@mail.mydomain.com>
Date: Wed, 18 May 2022 14:44:46 +0300 (MSK)
From: user@mydomain.com
test
they use a working DNS record and DKIM keys that were used under ScrollOUT F1 (everything works in ScrollOUT), and in PMG I get DKIM =fail. I tried different options, generated new keys. always the result is one DKIM=fail.
test send mail to gmail.com:
telnet ip 26 - Proxmox PMG - Fortigate - internet - gmail.com
dig +short txt dkim._domainkey
"v=DKIM1; p= MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDEcGpbxzJSsB44qzSlKA2r9kU/ SLNNmpPhflwwr/YIbukrnSCpZSWgBWJhnG2SxHia3hyJfAkflFFWg5tVr3Md3yy4 5vGOGKB5X11iPsPDmYD0Gdp1dxoPbazQhGxfhcN3kH1hL1/94wsBisAzFQ+3Orko umrPjhCTCFhMETriLQIDAQAB"
pmgsh get /config/dkim/selector
200 OK
{
"keysize" : 1024,
"record" : "dkim._domainkey\tIN\tTXT\t( \"v=DKIM1; h=sha256; k=rsa; \"\n\t \"p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDEcGpbxzJSsB44qzSlKA2r9kU/SLNNmpPhflwwr/YIbukrnSCpZSWgBWJhnG2SxHia3hyJfAkflFFWg5tVr3Md3yy45vGOGKB5X11iPsPDmYD0Gdp1dxoPbazQhGxfhcN3kH1hL1/94wsBisAzFQ+3OrkoumrPjhCTCFhMETriLQIDAQAB\" ) ; ----- DKIM key dkim",
"selector" : "dkim"
}
Delivered-To: @gmail.com
Received: by 2002:a05:612c:71f:b0:2ab:412b:e002 with SMTP id ft31csp500797vqb;
Wed, 18 May 2022 04:44:46 -0700 (PDT)
X-Google-Smtp-Source: ABdhPJw13z3iZUTDScc/jtEFrxwi6dj9Ehz/BakOcA/ZfdlGyQhLHPPxhnV1A3zqxgXwyW48lcmv
X-Received: by 2002:a2e:b744:0:b0:253:c8da:746 with SMTP id k4-20020a2eb744000000b00253c8da0746mr2010585ljo.401.1652874286563;
Wed, 18 May 2022 04:44:46 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1652874286; cv=none;
d=google.com; s=arc-20160816;
b=Sf8iGt/YAUn4RsJNCAcA1xsBibZuKXJaLJSVff2nThkb9d8UVkKqovxSNU0aDaQmKy
pqlTa4MssUA0vbv2u+aK4mg2CQOfnMIEuC5TE4pf1thaC7soRakPaf2Hg1utwU85ldIY
yL2+wHjtz/tMGlOVYltH0i9i19VTOWQYT6cCN42Ar1/VEVOmrF1gt8y0Ic5b30gTrpMF
E6cGIBLrH1GS4rPrz7beHA5z1/ywd7auUplMuOER5HmF7mruU/qbWJizulSaVs1mWar3
+kLRFakvq0sPKcBVV6yVlTtsqRAtZ5FjiiCHtY7J0/hT7wGv5kCi+oektTl0lfIT+74I
0DoQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816;
h=from:date:message-id:dkim-signature;
bh=g3zLYH4xKxcPrHOD18z9YfpQcnk/GaJedfustWU5uGs=;
b=mUSrvHvefBzeqY8az0r4scKYnG+EHsPl26/tomJtJQzKAZgxRvS32eYxJmPykII8El
e7luIHyLfn72phkLcozMMFDZE0YAR/1I+ir92HVGDBiAnGyMKsyINsSlryRvAMw4BG6r
xRNu5dzyfBT81ahFyoBzDxcg6OeNyBJAluQyfl9GvFCE2z5D8q+NBMcHrOrHVGfT+hGl
qHpYDTKvnbYrmaFha6kzO0NVpzMakAr1ldhmZj/pfU1o92Qx1p0CX0Fv4kx5mrcleeyW
r+AsjUOyJ8kJYuXWXuR0NqYmMkh0KNiRpfGppDCHeZypTnFA98nSx4dOZw1PaYMAhfym
slKA==
ARC-Authentication-Results: i=1; mx.google.com;
dkim=fail header.i=@mydomain.com header.s=dkim header.b=a1ctMNJo;
spf=pass (google.com: domain of user@mydomain.com designates 6.29.22.12 as permitted sender) smtp.mailfrom=user@mydomain.com;
dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=mydomain.com
Return-Path: <user@mydomain.com>
Received: from mail.mydomain.com (mail.mydomain.com. [6.29.22.12])
by mx.google.com with ESMTP id o25-20020ac24e99000000b004724d727094si1413533lfr.303.2022.05.18.04.44.46
for <@gmail.com>;
Wed, 18 May 2022 04:44:46 -0700 (PDT)
Received-SPF: pass (google.com: domain of user@mydomain.com designates 6.29.22.12 as permitted sender) client-ip=6.29.22.12;
Authentication-Results: mx.google.com;
dkim=fail header.i=@mydomain.com header.s=dkim header.b=a1ctMNJo;
spf=pass (google.com: domain of user@mydomain.com designates 6.29.22.12 as permitted sender) smtp.mailfrom=user@mydomain.com;
dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=user@mydomain.com
Received: from SPNX04 (localhost [127.0.0.1]) by mail.mydomain.com (Proxmox) with ESMTP id 3D8F2141A54 for <user@mydomain.com>; Wed, 18 May 2022 14:44:46 +0300 (MSK)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mydomain.com;
h=cc:from:reply-to:subject:to; s=dkim; bh=g3zLYH4xKxcPrHOD18z9Y fpQcnk/GaJedfustWU5uGs=; b=a1ctMNJoNFYQNPtXKbSXWuC2w4ri97oRg1kLl iQPh/pQl2f0aLd6gXE5C5rNh/fcD6m9gk2c1qTyyy2db4vd+k2vcyCyUq5BLeIJA BciZoRKCOBN/ovfWLBrqIR7df/LwPGtBx8Vj/HGUl0YtqSjozY9T3EPi89O9SrQH mj845E=
Received: from admin.local (IT01.BURG.local [10.10.31.231]) by mail.mydomain.com (Proxmox) with ESMTP id 2F391141A47 for <@gmail.com>; Wed, 18 May 2022 14:44:29 +0300 (MSK)
Message-Id: <20220518114446.3D8F2141A54@mail.mydomain.com>
Date: Wed, 18 May 2022 14:44:46 +0300 (MSK)
From: user@mydomain.com
test