|
@@ -0,0 +1,28 @@
|
|
|
+# If false, messages with empty envelope from are not signed
|
|
|
+allow_envfrom_empty = false;
|
|
|
+# If true, envelope/header domain mismatch is ignored
|
|
|
+allow_hdrfrom_mismatch = true;
|
|
|
+# If true, multiple from headers are allowed (but only first is used)
|
|
|
+allow_hdrfrom_multiple = true;
|
|
|
+# If true, username does not need to contain matching domain
|
|
|
+allow_username_mismatch = true;
|
|
|
+# If false, messages from authenticated users are not selected for signing
|
|
|
+auth_only = true;
|
|
|
+# Default path to key, can include '$domain' and '$selector' variables
|
|
|
+path = "/data/dkim/keys/$domain.dkim";
|
|
|
+# Default selector to use
|
|
|
+selector = "dkim";
|
|
|
+# If false, messages from local networks are not selected for signing
|
|
|
+sign_local = true;
|
|
|
+# Symbol to add when message is signed
|
|
|
+symbol = "DKIM_SIGNED";
|
|
|
+# Whether to fallback to global config
|
|
|
+try_fallback = true;
|
|
|
+# Domain to use for DKIM signing: can be "header" or "envelope"
|
|
|
+use_domain = "envelope";
|
|
|
+# Whether to normalise domains to eSLD
|
|
|
+use_esld = true;
|
|
|
+# Whether to get keys from Redis
|
|
|
+use_redis = false;
|
|
|
+# Hash for DKIM keys in Redis
|
|
|
+hash_key = "DKIM_KEYS";
|