From 92d23794b3e1bf5fa1e04963c65e534a533f2e4b Mon Sep 17 00:00:00 2001 From: Zhang Huangbin Date: Fri, 22 Jan 2016 23:22:11 +0800 Subject: [PATCH] Always generate DKIM key with key length '1024'. --- en_US/howto/2-sign.dkim.signature.for.new.domain.md | 11 +++-------- html/sign.dkim.signature.for.new.domain.html | 11 +++-------- 2 files changed, 6 insertions(+), 16 deletions(-) diff --git a/en_US/howto/2-sign.dkim.signature.for.new.domain.md b/en_US/howto/2-sign.dkim.signature.for.new.domain.md index 2cc89efa..5d4d4a68 100644 --- a/en_US/howto/2-sign.dkim.signature.for.new.domain.md +++ b/en_US/howto/2-sign.dkim.signature.for.new.domain.md @@ -56,21 +56,16 @@ If you or your customer prefer to use their own DKIM key, you can generate a new DKIM key and ask your customer to add DKIM DNS record. Refer to our tutorial to [add DKIM DNS record](setup.dns.html#dkim-record-for-your-mail-domain-name). -* Generate new DKIM key (key length `2048`) for new domain. +* Generate new DKIM key (key length `1024`) for new domain. ```shell -# amavisd-new genrsa /var/lib/dkim/new_domain.com.pem 2048 +# amavisd-new genrsa /var/lib/dkim/new_domain.com.pem 1024 ``` > * if you're running CentOS, you may need to specify its config file on > command line. For example: > -> `# amavisd -c /etc/amavisd/amavisd.conf genrsa /var/lib/dkim/new_domain.com.pem 2048` - -> * Some DNS provider doesn't support long value for TXT type DNS record, you -> need to create a shorter key with key length `1024`. For example: -> -> `# amavisd-new genrsa /var/lib/dkim/new_domain.com.pem 1024` +> `# amavisd -c /etc/amavisd/amavisd.conf genrsa /var/lib/dkim/new_domain.com.pem 1024` * Find below setting in Amavisd config file `amavisd.conf`: diff --git a/html/sign.dkim.signature.for.new.domain.html b/html/sign.dkim.signature.for.new.domain.html index 6674f1b0..6017b4a9 100644 --- a/html/sign.dkim.signature.for.new.domain.html +++ b/html/sign.dkim.signature.for.new.domain.html @@ -69,9 +69,9 @@ line like below:

a new DKIM key and ask your customer to add DKIM DNS record. Refer to our tutorial to add DKIM DNS record.

-
# amavisd-new genrsa /var/lib/dkim/new_domain.com.pem 2048
+
# amavisd-new genrsa /var/lib/dkim/new_domain.com.pem 1024
 
@@ -79,12 +79,7 @@ tutorial to add D
  • if you're running CentOS, you may need to specify its config file on command line. For example:
  • -

    # amavisd -c /etc/amavisd/amavisd.conf genrsa /var/lib/dkim/new_domain.com.pem 2048

    -
      -
    • Some DNS provider doesn't support long value for TXT type DNS record, you - need to create a shorter key with key length 1024. For example:
    • -
    -

    # amavisd-new genrsa /var/lib/dkim/new_domain.com.pem 1024

    +

    # amavisd -c /etc/amavisd/amavisd.conf genrsa /var/lib/dkim/new_domain.com.pem 1024

    • Find below setting in Amavisd config file amavisd.conf: