Sziasztok. Az volna a kérdés,hogy szabályos megadni a txt-ben a dkim kulcsomat?

Ezt írja terminálban ha ellenőrzöm.:

sudo opendkim-testkey -d vtmk.hu -s default -vvv
opendkim-testkey: using default configfile /etc/opendkim.conf
opendkim-testkey: checking key 'default._domainkey.vtmk.hu'
opendkim-testkey: syntax error in key data (ASCII 0x22 at offset 16)

Ez a kulcsom:

"v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlDv2kr5/XYYmYzy1ynCe25/2AYsLaQtZMvKoXsa1W1qgFfKFKmMw6vhcuLkII8FA8gJG18p9wwoXoP5wNZZOC02u9rrgoZt8FsuQmO6b/QJKNSuHEECr6hVD+H9C9zS9ThuQk2qa3RtVO6apHCcw/DLpQ1DN14kNd7URNQlGZLKFgblGI1NwaCOLvUgqpFP/"

Illetve ha ezt kapom,hogy tudom javítani:

opendkim-testkey: using default configfile /etc/opendkim.conf
opendkim-testkey: checking key 'default._domainkey.vtmk.hu'
opendkim-testkey: key not secure
opendkim-testkey: key OK

    mennydorges
    Szia!
    Sztem valahol idézőjel van ahol nem kéne hogy legyen. (DNS rekordban???) (Feltételezve, hogy a dkim fut rendben.)

      Szia
      Kittus2 ezzel kísérletezem már órák óta... ha kiveszem systax error-ra lázad...

      root@panel:~# sudo opendkim-testkey -d vtmk.hu -s mail -vvv
      opendkim-testkey: using default configfile /etc/opendkim.conf
      opendkim-testkey: checking key 'mail._domainkey.vtmk.hu'
      opendkim-testkey: syntax error in key data (ASCII 0x22 at offset 0)
      root@panel:~# sudo opendkim-testkey -d vtmk.hu -s default -vvv
      opendkim-testkey: using default configfile /etc/opendkim.conf
      opendkim-testkey: checking key 'default._domainkey.vtmk.hu'
      opendkim-testkey: syntax error in key data (ASCII 0x22 at offset 27)

      Próbálom fedarálni de nem tetszik neki sehogy sem...

      mail._domainkey.vtmk.hu
      "v=DKIM1; h=sha256; k=rsa; t=y; "
      "p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvQ4LwRrP+KX27HQggYBqzKbsMxSlTnpILrktQezJZBYOC4DVeZ6LjlpNgfvW8IUcwwR6zVshAnTdnm3qZOvHMqsUhvVPDX8FpaW6kKs1XJL0XObXA66F3DcWWsVRLiBS/+O8tYuYtEYkvfSlZ6n8I11mIo3wejXMAP33JOnur3tV3Feya7TNKJYV2oPAOu52AyE2wSMYmSO34g"
      
               
      
      
      
      default._domainkey.vtmk.hu
      
      "v=DKIM1; h=sha256; k=rsa; "
      "p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA29HknjvWiz3/Y2ZiN017mvqt/7Zt4lSAeX/ixDTlZul0Rs9MYflKxzH6jvtbltDbnvsEHNv6CSZZ22iDJi6SqnSdWhp0uo+UcaVN8IiNoYHujR+QYV8EF/0EKVBnkBTIc+xpjVCaoWRguoMQkOTjv6IayjIuxiNNWr4ZL56qGTBZTwiInMoooSsG0o+DogQHNcLvTVhfRf3dxv"

      így systax hiba:

      v=DKIM1; h=sha256; k=rsa; t=y; 
      "p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvQ4LwRrP+KX27HQggYBqzKbsMxSlTnpILrktQezJZBYOC4DVeZ6LjlpNgfvW8IUcwwR6zVshAnTdnm3qZOvHMqsUhvVPDX8FpaW6kKs1XJL0XObXA66F3DcWWsVRLiBS/+O8tYuYtEYkvfSlZ6n8I11mIo3wejXMAP33JOnur3tV3Feya7TNKJYV2oPAOu52AyE2wSMYmSO34g"

      így is belázad:

      "v=DKIM1; h=sha256; k=rsa;"
      p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA29HknjvWiz3/Y2ZiN017mvqt/7Zt4lSAeX/ixDTlZul0Rs9MYflKxzH6jvtbltDbnvsEHNv6CSZZ22iDJi6SqnSdWhp0uo+UcaVN8IiNoYHujR+QYV8EF/0EKVBnkBTIc+xpjVCaoWRguoMQkOTjv6IayjIuxiNNWr4ZL56qGTBZTwiInMoooSsG0o+DogQHNcLvTVhfRf3dxv

        Kittus2

        mail._domainkey.vtmk.hu
        v=DKIM1; h=sha256; k=rsa; t=y;
        p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvQ4LwRrP+KX27HQggYBqzKbsMxSlTnpILrktQezJZBYOC4DVeZ6LjlpNgfvW8IUcwwR6zVshAnTdnm3qZOvHMqsUhvVPDX8FpaW6kKs1XJL0XObXA66F3DcWWsVRLiBS/+O8tYuYtEYkvfSlZ6n8I11mIo3wejXMAP33JOnur3tV3Feya7TNKJYV2oPAOu52AyE2wSMYmSO34g
                 
        
        
        
        default._domainkey.vtmk.hu
        
        v=DKIM1; h=sha256; k=rsa;
        p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA29HknjvWiz3/Y2ZiN017mvqt/7Zt4lSAeX/ixDTlZul0Rs9MYflKxzH6jvtbltDbnvsEHNv6CSZZ22iDJi6SqnSdWhp0uo+UcaVN8IiNoYHujR+QYV8EF/0EKVBnkBTIc+xpjVCaoWRguoMQkOTjv6IayjIuxiNNWr4ZL56qGTBZTwiInMoooSsG0o+DogQHNcLvTVhfRf3dxv

        terminal:

        sudo opendkim-testkey -d vtmk.hu -s mail -vvv
        opendkim-testkey: using default configfile /etc/opendkim.conf
        opendkim-testkey: checking key 'mail._domainkey.vtmk.hu'
        opendkim-testkey: key not secure
        opendkim-testkey: key OK
        
        sudo opendkim-testkey -d vtmk.hu -s default -vvv
        opendkim-testkey: using default configfile /etc/opendkim.conf
        opendkim-testkey: checking key 'default._domainkey.vtmk.hu'
        opendkim-testkey: key not secure
        opendkim-testkey: key OK

        várj most így kértem le:

        dig mail._domainkey.vtmk.hu TXT +dnssec
        
        ; <<>> DiG 9.11.3-1ubuntu1.18-Ubuntu <<>> mail._domainkey.vtmk.hu TXT +dnssec
        ;; global options: +cmd
        ;; Got answer:
        ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 28784
        ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
        
        ;; OPT PSEUDOSECTION:
        ; EDNS: version: 0, flags: do; udp: 65494
        ; OPT=5: 05 07 08 0a 0d 0e 0f (".......")
        ; OPT=6: 01 02 04 ("...")
        ; OPT=7: 01 (".")
        ;; QUESTION SECTION:
        ;mail._domainkey.vtmk.hu.       IN      TXT
        
        ;; ANSWER SECTION:
        mail._domainkey.vtmk.hu. 60     IN      TXT     "v=DKIM1; h=sha256; k=rsa; t=y; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvQ4LwRrP+KX27HQggYBqzKbsMxSlTnpILrktQezJZBYOC4DVeZ6LjlpNgfvW8IUcwwR6zVshAnTdnm3qZOvHMqsUhvVPDX8FpaW6kKs1XJL0XObXA66F3DcWWsVRLiBS/+O8tYuYtEYkvfSlZ6n8I11mIo3wejXMAP33JOnur3tV3Feya7"
        
        ;; Query time: 40 msec
        ;; SERVER: 127.0.0.53#53(127.0.0.53)
        ;; WHEN: Wed Dec 13 23:39:47 CET 2023
        ;; MSG SIZE  rcvd: 343

          Dec 16 13:29:36 panel opendkim[4809]: OpenDKIM Filter v2.11.0 terminating with status 0, errno = 0
          Dec 16 13:29:36 panel opendkim[5188]: OpenDKIM Filter v2.11.0 starting (args: -x /etc/opendkim.conf)

          opendkim.conf

          # installation. For more advanced options, see opendkim.conf(5) and/or
          # /usr/share/doc/opendkim/examples/opendkim.conf.sample.
          
          # Log to syslog
          Syslog			yes
          # Required to use local socket with MTAs that access the socket as a non-
          # privileged user (e.g. Postfix)
          UMask			007
          Logwhy  yes
          # Sign for example.com with key in /etc/dkimkeys/dkim.key using
          # selector '2007' (e.g. 2007._domainkey.example.com)
          #Domain			example.com
          #KeyFile		/etc/dkimkeys/dkim.key
          #Selector		2007
          
          # Commonly-used options; the commented-out versions show the defaults.
          Canonicalization	relaxed/simple
          Mode			sv
          SubDomains		no
          
          # Socket smtp://localhost
          #
          # ##  Socket socketspec
          # ##
          # ##  Names the socket where this filter should listen for milter connections
          # ##  from the MTA.  Required.  Should be in one of these forms:
          # ##
          # ##  inet:port@address           to listen on a specific interface
          # ##  inet:port                   to listen on all interfaces
          # ##  local:/path/to/socket       to listen on a UNIX domain socket
          #
          #Socket                  inet:8892@localhost
          Socket			local:/var/run/opendkim/opendkim.sock
          
          ##  PidFile filename
          ###      default (none)
          ###
          ###  Name of the file where the filter should write its pid before beginning
          ###  normal operations.
          #
          PidFile               /var/run/opendkim/opendkim.pid
          
          
          # Always oversign From (sign using actual From and a null From to prevent
          # malicious signatures header fields (From and/or others) between the signer
          # and the verifier.  From is oversigned by default in the Debian pacakge
          # because it is often the identity key used by reputation systems and thus
          # somewhat security sensitive.
          OversignHeaders		From
          
          ##  ResolverConfiguration filename
          ##      default (none)
          ##
          ##  Specifies a configuration file to be passed to the Unbound library that
          ##  performs DNS queries applying the DNSSEC protocol.  See the Unbound
          ##  documentation at http://unbound.net for the expected content of this file.
          ##  The results of using this and the TrustAnchorFile setting at the same
          ##  time are undefined.
          ##  In Debian, /etc/unbound/unbound.conf is shipped as part of the Suggested
          ##  unbound package
          
          # ResolverConfiguration     /etc/unbound/unbound.conf
          
          ##  TrustAnchorFile filename
          ##      default (none)
          ##
          ## Specifies a file from which trust anchor data should be read when doing
          ## DNS queries and applying the DNSSEC protocol.  See the Unbound documentation
          ## at http://unbound.net for the expected format of this file.
          
          TrustAnchorFile       /usr/share/dns/root.key
          
          AutoRestart			yes
          AutoRestartRate			10/1M
          Background			yes
          DNSTimeout			5
          SignatureAlgorithm		rsa-sha256
          
          ##  Userid userid
          ###      default (none)
          ###
          ###  Change to user "userid" before starting normal operation?  May include
          ###  a group ID as well, separated from the userid by a colon.
          #
          UserID                opendkim
          
          KeyTable            refile:/etc/opendkim/key.table
          SigningTable        refile:/etc/opendkim/signing.table
          ExternalIgnoreList  /etc/opendkim/trusted.hosts
          InternalHosts       /etc/opendkim/trusted.hosts

          key.table:
          default._domainkey.vtmk.hu vtmk.hu:default:/etc/opendkim/keys/vtmk.hu/default.private
          mail._domainkey.vtmk.hu vtmk.hu:mail:/etc/opendkim/keys/vtmk.hu/mail.private

          signingtable:
          *@vtmk.hu default._domainkey.vtmk.hu
          *@*.vtmk.hu default._domainkey.vtmk.hu
          *@vtmk.hu mail._domainkey.vtmk.hu
          *@.vtmk.hu mail._domainkey.vtmk.hu

          nem tudom már hány féle konfigot próbáltam,de semmi. Valakinek van működő konfigja a fileokról mindről megosztanál?

          sziasztok.
          Szerintetek látni már ebben a dnssec-et?

          dig dkim._domainkey.vtmk.hu TXT +dnssec
          
          ; <<>> DiG 9.11.3-1ubuntu1.18-Ubuntu <<>> dkim._domainkey.vtmk.hu TXT +dnssec
          ;; global options: +cmd
          ;; Got answer:
          ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 45933
          ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
          
          ;; OPT PSEUDOSECTION:
          ; EDNS: version: 0, flags: do; udp: 65494
          ; OPT=5: 05 07 08 0a 0d 0e 0f (".......")
          ; OPT=6: 01 02 04 ("...")
          ; OPT=7: 01 (".")
          ;; QUESTION SECTION:
          ;dkim._domainkey.vtmk.hu.       IN      TXT
          
          ;; ANSWER SECTION:
          dkim._domainkey.vtmk.hu. 60     IN      TXT     "v=DKIM1; h=sha256; k=rsa; t=y; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArMDdMFt50N4cqlrvNZUOrkuIgciZjZdY+PNAf0nT/2EdNUb6kN1WoCQ1G5wGQjqYDlX4eOklqmzcXVeNMEnXu1x16BgVoY3yBdQsNrOIIDGfouwXi9gnUmK5rs7PhoF5MOStbxtcetX1j1/PiF1MRVUcZBDZQYItP3652K6e/oSNJHCs98"
          
          ;; Query time: 41 msec
          ;; SERVER: 127.0.0.53#53(127.0.0.53)
          ;; WHEN: Mon Dec 18 02:46:30 CET 2023
          ;; MSG SIZE  rcvd: 343
          Ennyivel később: egy év