This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DKIM not signing NDR from internal servers

Hi,

I have recently configured DMARC and DKIM on our XG450 Units (18.0.1 MR-1-Build396), currently no policy is being applied while I monitor results.

I have noticed most, if not all, of the responses to failure reports are NDR's generated by our internal exchange servers. It appears that the XG is passing these emails without applying the DKIM signature.

Exchange has a rule configured to "reject the message and include the explanation 'User Account is disabled' with the status code: '5.7.1'"

Examining the header information of the copy of the email returned in the failure report shows other Sophos header information but no sign of DKIM, normal email sent are working as expected.

Please let me know if you require examples or any log content to identify the cause.



This thread was automatically locked due to age.
Parents
  • Just had one as a result of an Out of Office automatic reply, same result no DKIM signature. At the moment the bulk of my Failure Reports are from linkedin as most vendors don't issue them.

    I have also completed a test using gmail to send an email to a known disabled account and the NDR does return, but it is not DKIM signed.

Reply
  • Just had one as a result of an Out of Office automatic reply, same result no DKIM signature. At the moment the bulk of my Failure Reports are from linkedin as most vendors don't issue them.

    I have also completed a test using gmail to send an email to a known disabled account and the NDR does return, but it is not DKIM signed.

Children
No Data