On 05/02/2013 12:26 PM, sugeng alfiansyah wrote:
> Saya periksa smtp-in tidak ada yg aneh:

> Wed 2013-05-01 13:44:13: <-- EHLO rjbroomstotok Wed 2013-05-01
> 13:44:13: --> 250-mail.ayanaresort.com Hello rjbroomstotok, pleased
> to meet you
....
> Wed 2013-05-01 13:44:13: <-- MAIL FROM: <[email protected]>
> Wed 2013-05-01 13:44:13: --> 250 <[email protected]>, Sender
> ok

Ini indikasi MDaemon Anda tidak secure, karena membolehkan sender yang
tidak authenticate kirim/relay mail.
Tanpa authentication maka sangat mudah memalsu identitas --> server
Anda dengan mudah dipakai spammer atau worm virus untuk kirim mail.

Coba periksa isian trusted host/domain, harusnya kosong

http://mdaemon.dutaint.co.id/13.0.1/index.html?security__trusted_hosts.htm

di relay setting juga di set hanya authenticate sender saja yang diaccept.

http://mdaemon.dutaint.co.id/13.0.1/index.html?security__relay_settings.htm

Mail Relaying
[x] Do not allow message relaying
[x] ...unless sent via authenticated SMTP session

Account Verification

[x] SMTP MAIL address must exist if it uses a local domain

[x] SMTP RCPT address must exist if it uses a local domain

http://mdaemon.dutaint.co.id/13.0.1/index.html?security__smtp_authentication.htm

[x] Don't apply IP Shield to authenticated sessions
[x] Authentication is always required when mail is from local accounts
[x] Mail from 'Postmaster', 'abuse', 'webmaster' must be authenticated
[x] Authentication credentials must match those of the email sender

Ajarkan user yang pakai email client untuk mengaktifkan
smtpauthentication di email clientnya, atau haruskan pakai worldclient
webmail.

http://www.networksolutions.com/support/how-do-i-enable-smtp-authentication

-- 
syafril
-------
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 13.5 Beta RC1 SecurityPlus 4.1.5
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.


-- 
--[MDaemon-L]------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server.

Netiket: http://www.netmeister.org/news/learn2quote
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Henti Langgan: Kirim mail ke MDaemon-L-unsubscribe [at] dutaint.com
Berlangganan: kirim mail ke MDaemon-L-subscribe [at] dutaint.com
Versi terakhir MD 13.0.5, SP 4.1.5, BES 2.0.2, OC 2.3.1, SG 2.1.1, PP 2.0.1

Kirim email ke