On 2018-09-14 19:10, Suzy Ariyani (s...@ptbmi.com) wrote:
> Tentang Email2 yg tersangkut di Quarantine Queue.
> Saat kita dpt report dari MDaemon daftar email2 yg masuk Quarantine
> Queue apa yg harus kita lakukan?
> 1. membagi email tsb. kepada penerima email dan mengkonfirmasi email itu
> email mereka or bukan,
> 2. mengecek secara manual 1per1 header2 email tsb. dan menganalisa sendiri

Analisis sendiri.

> Jika mengerjakan no. 2 kemungkinan2nya:
> 1. PTR bermasalah taunya IP itu harus masuk Dynamic Blacklist or not yg saya 
> tau hanya:
>     a. pastikan bukan IP kelompok IP Public ISP terkait
>     b. sy ambil domain name yg ada di header email dan coba cek lewat browser
>     c. ...... cara apa lagi yg bs sy pakai utk pengecekan? jika domain 
> merujuk ke website tertentu tp email masuk ke quarantine queue

Gunakan logika bisnis untuk justifikasi.

> Kalimat2 kunci apa di header yg bs kita buat sebagai dasar memilah2 ya pak?

Lihat header berikut ini

> Authentication-Results: bb.ptbmi.com;
>     spf=pass smtp.mailfrom=saa...@u-mark.net;
>     dkim=pass (good signature) header.d=u-mark.net header.b=MXGbj0D+eq;
>     dmarc=none header.from=hotelpesonnasurabaya.com (no DMARC record);
>     iprev=pass policy.iprev=37.58.76.20 (PTR server2.u-mark.net);
>     iprev=pass policy.iprev=37.58.76.20 (HELO server2.u-mark.net);
>     iprev=pass policy.iprev=37.58.76.20 (MAIL saa...@u-mark.net)

Gunakan Mail From (sender) <address> sebagai patokkan sumber dari mail,
bukan From <address>.

> sad...@hotelpesonnasurabaya.com

Domain hotelpesonnasurabaya.com tidak ada hubungannya dengan domain
saa...@u-mark.net.
Kesimpulannya mail itu adalah phising spam.negara

Bisa masukkan sender domain kedalam sender blacklist.

$ whois u-mark.net

Domain Name: U-MARK.NET
Registry Domain ID: 2626096_DOMAIN_NET-VRSN
Registrar WHOIS Server: whois.name.com
Registrar URL: http://www.name.com
Updated Date: 2018-01-29T08:40:05Z
Creation Date: 1998-08-13T04:00:00Z
Registrar Registration Expiration Date: 2020-08-12T04:00:00Z
Registrar: Name.com, Inc.
Registrar IANA ID: 625
Reseller:
Domain Status: clientTransferProhibited
https://www.icann.org/epp#clientTransferProhibited
Registry Registrant ID: Not Available From Registry
Registrant Name: ibrahim salama
Registrant Organization: United Trading &amp; Marketing Ltd. Co. (U-Mark)
Registrant Street: Riyadh - Al Malaz
Registrant City: Riyadh
Registrant State/Province: riyadh
Registrant Postal Code: 11415
Registrant Country: SA
Registrant Phone: +966.507999798
Registrant Email: ibrahim19...@gmail.com
Registry Admin ID: Not Available From Registry
Admin Name: ibrahim salama
Admin Organization: United Trading &amp; Marketing Ltd. Co. (U-Mark)
Admin Street: Riyadh - Al Malaz
Admin City: Riyadh
Admin State/Province: riyadh
Admin Postal Code: 11415
Admin Country: SA
Admin Phone: +966.507999798
Admin Email: ibrahim19...@gmail.com
Registry Tech ID: Not Available From Registry
Tech Name: ibrahim salama
Tech Organization: United Trading &amp; Marketing Ltd. Co. (U-Mark)
Tech Street: Riyadh - Al Malaz
Tech City: Riyadh
Tech State/Province: riyadh
Tech Postal Code: 11415
Tech Country: SA
Tech Phone: +966.507999798
Tech Email: ibrahim19...@gmail.com
Name Server: ns1.u-mark.net

$ whois hotelpesonnasurabaya.com
   Domain Name: HOTELPESONNASURABAYA.COM
   Registry Domain ID: 2062773453_DOMAIN_COM-VRSN
   Registrar WHOIS Server: whois.PublicDomainRegistry.com
   Registrar URL: http://www.publicdomainregistry.com
   Updated Date: 2017-10-02T03:24:41Z
   Creation Date: 2016-09-30T06:06:27Z
   Registry Expiry Date: 2018-09-30T06:06:27Z
   Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com
   Registrar IANA ID: 303
   Registrar Abuse Contact Email: abuse-cont...@publicdomainregistry.com
   Registrar Abuse Contact Phone: +1.2013775952
   Domain Status: clientTransferProhibited
https://icann.org/epp#clientTransferProhibited
   Name Server: NS.BEONINTERMEDIA.COM
   Name Server: NS.JAGOANHOSTING.COM
   Name Server: NS.JAGOANWEB.COM
   DNSSEC: unsigned
   URL of the ICANN Whois Inaccuracy Complaint Form:
https://www.icann.org/wicf/
>>> Last update of whois database: 2018-09-14T13:12:36Z <<<






-- 
syafril
-------
Syafril Hermansyah
MDaemon-L Moderators, MDaemon 18.5.0-64 Beta C
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Instruction does much, but encouragement everything.
        --- Johann Wolfgang von Goethe


-- 
--[mdaemon-l]----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 18.0.2, SG 5.5.0


Kirim email ke