ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Setup DKIM with Exchange 2013/2016 Inhouse Server

    IT Discussion
    dkim microsoft exchange server 2016 windows server 2016 dkim-exchange dmarc dns windows server
    5
    16
    10.2k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jjvalstar
      last edited by

      Hi,
      I tried to do this dkim for exchange server 2016 CU20.
      I have installed version 3.3.2, it generates indeed the folder:
      C:\Program Files\Exchange DkimSigner

      But if I start Configuration.DkimSigner.exe it does not give me the output as I expected from your manual.

      See screendump below:
      79ed8609-cde9-41cf-8e3e-1a3669138aa6-image.png

      What I'm doing wrong?

      dbeatoD 1 Reply Last reply Reply Quote 0
      • dbeatoD
        dbeato @jjvalstar
        last edited by

        @jjvalstar said in Setup DKIM with Exchange 2013/2016 Inhouse Server:

        t Configuration.DkimSigner.exe it does not give me the output as I expected from your manual.

        Try doing the offline install from below
        https://github.com/Pro/dkim-exchange/wiki/Installation

        1 Reply Last reply Reply Quote 0
        • A
          akpeelo
          last edited by

          I've installed exchange server 2016 CU21 and i've followed your post, but on the Domain Settings at the "Check" button when clicked says "No record found". ive updated my external dns with the suggested DNS Name and Suggested DNS Records respectively from the DKIM. What should i do next?

          dbeatoD 1 Reply Last reply Reply Quote 0
          • dbeatoD
            dbeato @akpeelo
            last edited by

            @akpeelo Can you do an nslookup of the record and see if you get information back on the lookup?

            A 1 Reply Last reply Reply Quote 0
            • A
              akpeelo @dbeato
              last edited by

              @dbeato do you mean perform nslookup on the selector? NB: if i use online tools such as https://dmarcian.com to check the record, it fails automatically. but if i enter the selector i used in the DKIM software on my server, it passes the check in the online tool.

              A 1 Reply Last reply Reply Quote 0
              • A
                akpeelo @akpeelo
                last edited by

                @akpeelo Please can someone help out?

                V dbeatoD 2 Replies Last reply Reply Quote 0
                • V
                  VoIP_n00b @akpeelo
                  last edited by

                  @akpeelo https://github.com/Pro/dkim-exchange/issues

                  1 Reply Last reply Reply Quote -1
                  • dbeatoD
                    dbeato @akpeelo
                    last edited by

                    @akpeelo said in Setup DKIM with Exchange 2013/2016 Inhouse Server:

                    @akpeelo Please can someone help out?

                    Check this
                    https://github.com/Pro/dkim-exchange/issues/342

                    Also can you actually show your error, it is kind of hard to help without seeing what you see?

                    A 1 Reply Last reply Reply Quote 0
                    • A
                      akpeelo @dbeato
                      last edited by

                      @dbeato ![alt text](DKIM.jpg image url).

                      dbeatoD 1 Reply Last reply Reply Quote 0
                      • dbeatoD
                        dbeato @akpeelo
                        last edited by

                        @akpeelo What is the DNS record that you added for adraghana.org?

                        A 1 Reply Last reply Reply Quote 0
                        • A
                          akpeelo @dbeato
                          last edited by

                          @dbeato i added a TXT record and in the txt record, i added the Suggested Name as the host=20211509._domainkey and then added the Suggested DNS record =v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAjddh3bmEvLbFI6cp60ZTEQJo4et80bPMhJ1OV5mVSOJl8w2hQL8EBzKISDNDxk9S6e7AiVTNNeYDu6mnxpacvlfsBEb5Pg1ZHqCiojf01XS4hbgvDLeHxsX2L11cYiYICQUQtVIzY0NHKZ2wN8bo2DkP+U10rb+KCTOeVi1jkeQHi+X5jp8NbiS/o4N0IFAzX7RP055oTvq8pBPtFI63IehSOsFndj3Cq6jBl0Oqb3R8lrKtih4tpK64HZwHTJWOR642MYVS4tiP5uAQTtaVQsnK81vW4lVGJDeLjiqLJI1B/m1mLatyJTM/FvlDCq1J2Y39Gv11uJz2Di0WsFH9xwIDAQAB as the value.

                          dbeatoD 1 Reply Last reply Reply Quote 0
                          • dbeatoD
                            dbeato @akpeelo
                            last edited by

                            @akpeelo said in Setup DKIM with Exchange 2013/2016 Inhouse Server:

                            @dbeato i added a TXT record and in the txt record, i added the Suggested Name as the host=20211509._domainkey and then added the Suggested DNS record =v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAjddh3bmEvLbFI6cp60ZTEQJo4et80bPMhJ1OV5mVSOJl8w2hQL8EBzKISDNDxk9S6e7AiVTNNeYDu6mnxpacvlfsBEb5Pg1ZHqCiojf01XS4hbgvDLeHxsX2L11cYiYICQUQtVIzY0NHKZ2wN8bo2DkP+U10rb+KCTOeVi1jkeQHi+X5jp8NbiS/o4N0IFAzX7RP055oTvq8pBPtFI63IehSOsFndj3Cq6jBl0Oqb3R8lrKtih4tpK64HZwHTJWOR642MYVS4tiP5uAQTtaVQsnK81vW4lVGJDeLjiqLJI1B/m1mLatyJTM/FvlDCq1J2Y39Gv11uJz2Di0WsFH9xwIDAQAB as the value.

                            It is correct as below

                            94b97c23-0e41-4dbc-b0ae-e46eb0e8fd7d-image.png

                            So basically the issues is on the DKIM application but your messages are signed properly.

                            A 1 Reply Last reply Reply Quote 0
                            • A
                              akpeelo @dbeato
                              last edited by

                              @dbeato so what should my next step be?

                              1 Reply Last reply Reply Quote 0
                              • T
                                Teece @dbeato
                                last edited by

                                @dbeato step 4 is wrong. The DKIM signer needs to be at the BOTTOM of this list, so it runs last. Otherwise, other transport agents may modify the message, which would render the signatures generated by the signer invalid.

                                dbeatoD 1 Reply Last reply Reply Quote 0
                                • dbeatoD
                                  dbeato @Teece
                                  last edited by

                                  @teece I haven't seen that happened ever, no other transport rules modified the DKIM at all.

                                  1 Reply Last reply Reply Quote 0
                                  • 1 / 1
                                  • First post
                                    Last post