Fixed DKIM: Emails are signed without public key being published

Kirby

Well-known member
Affected version
2.2.9
Steps to reproduce
  1. Setup DKIM in Xenforo but do not add the DNS record
  2. Send an email via XenForo
  3. Check if the email is signed
Expected Result
The email is not signed

Actual Result
The email is signed

This seems rather bad as it could increase the likeliness of emails being flagged as spam.
XenForo should only enable signing after verification is successful.
 
Thank you for reporting this issue, it has now been resolved. We are aiming to include any changes that have been made in a future XF release (2.2.11).

Change log:
Only sign emails if DKIM setup has been verified
There may be a delay before changes are rolled out to the XenForo Community.
 
Back
Top Bottom