Topic: Generating multiple DKIM keys and records, one per domain
==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.5-1
- Linux/BSD distribution name and version: FreeBSD 10.3
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? Yes
- Related log if you're reporting an issue:
Greetings. For administrative reasons I will need to define different DKIM certs and keys and DNS records for each domain hosted on this iRedMail server.
Various websites about OpenSSL say this is OK (and some encourage periodic regeneration of DKIM keys and records),
but how to do this with iRedMail?
The documents cover generating the DKIM record in DNS but not creation of the cert/key pair. Also, what changes to amavisd configuration are needed? I searched the forums but didn't find this, though maybe I missed it.
Finally, a bug note: At least on FreeBSD, the existing private key in /var/lib/dkim is world-readable. Should it be 0440?
Thanks in advance.
====
----
Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.