Hi there. I'm running Sophos XG 19.01 using it in MTA mode for e-mail. I am attempting to enable DKIM signatures on outbound e-mail without much luck. I've followed the details in the documentation (https://docs.sophos.com/nsg/sophos-firewall/19.0/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Email/GeneralSettings/EmailDKIMSignatureAdd/index.html and https://support.sophos.com/support/s/article/KB-000034335?language=en_US), but still can't get outbound e-mails with DKIM signatures.
Some additional details:
- I've generated the RSA public and private keys using openssl on a Windows machine following the directions of the second link above
- I've tried copying and pasting into Sophos the generated private key in the form originally generated (i.e. with the ------BEGIN PRIVATE KEY------ and ------END PRIVATE KEY------ headers and footers and all CRs), and then tried stripping out the headers and all CRs) - no difference
- I've used the string "dkim" as the selector in Sophos XG
- I'm testing by sending e-mails from a server behind the firewall to a test e-mail address at https://www.appmaildev.com/.
- The e-mails received by appmaildev.com shows x-sender: root@[servername].[domain name].com
- Sophos XG is configured to use a smarthost for outbound e-mail (mailout.zoneedit.com)
I've checked and rechecked but can't quite figure out what the problem is. Any suggestions would be most appreciated.
This thread was automatically locked due to age.