[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Syafril Hermansyah
On 13/06/19 08.15, Ivan (bluesky1...@gmail.com) wrote:
 Bisa terjadi seperti itu karena sender address masuk dalam daftar
 whitelist contact recipientv...@pttdp.com  atau terdaftar di antispam
 whitelist no filtering.
>>> Pak kalau ini cek dimana ?
>>
>> Di antispam log.
>>
> Pak kalau daftar whitelist bukan Log kan ?


Tidak, tetapi akan tampil di log.

Whitelist/blacklist contact adanya di webmail.
Bisa di share blacklist/whitelist contact ke global Administrator untuk
 pemeriksaan.

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg42968.html


-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Learning is not child's play; we cannot learn without pain
--- Aristotle


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Ivan

On 13/06/19 07:46, Syafril Hermansyah wrote:

On 13/06/19 07.47, Ivan (bluesky1...@gmail.com) wrote:

Bisa terjadi seperti itu karena sender address masuk dalam daftar
whitelist contact recipientv...@pttdp.com  atau terdaftar di antispam
whitelist no filtering.

Pak kalau ini cek dimana ?


Di antispam log.


Pak kalau daftar whitelist bukan Log kan ?
--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] Spam Email

2019-06-12 Terurut Topik Anjas Wahyu Nurhayanto
> Diblock saja sender address di blacklist contact webmail user
> b...@aksball.co.id

Baik, Pak. Terima kasih atas bantuan dan kerjasamanya.


-- 
Warm Regards,

Anjas
-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Syafril Hermansyah
On 13/06/19 07.47, Ivan (bluesky1...@gmail.com) wrote:
>> Bisa terjadi seperti itu karena sender address masuk dalam daftar
>> whitelist contact recipientv...@pttdp.com  atau terdaftar di antispam
>> whitelist no filtering.
> Pak kalau ini cek dimana ?


Di antispam log.

-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

The more I read, the more I acquire, the more certain I am that I know
nothing.
--- Voltaire


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Ivan

On 13/06/19 06:23, Syafril Hermansyah wrote:

Bisa terjadi seperti itu karena sender address masuk dalam daftar
whitelist contact recipientv...@pttdp.com  atau terdaftar di antispam
whitelist no filtering.
Pak kalau ini cek dimana ? karena kalau saya cek di menu 
spamfilter-whitelist(bysender) domain morepen.com ini tidak ada dalam daftar

--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Syafril Hermansyah
On 12/06/19 18.27, Ivan (bluesky1...@gmail.com) wrote:
> Pak ini ada contoh kasusnya utk domain : Morepen.com
> 
> *HEADER TIDAK KENA SPAM : *
> From - Tue Jun 11 12:30:06 2019


> Return-path: 
> From: Gaurav Lakhani 


Ini bukan tidak kena spam emlainkan tidak discan/filter oleh antispam
content filtering.
Bisa terjadi seperti itu karena sender address masuk dalam daftar
whitelist contact recipient v...@pttdp.com atau terdaftar di antispam
whitelist no filtering.

> HEADER KENA SPAM :

> Return-path: 
> From: Bharat Rajdev 

> X-Spam-Status: Yes, score=6.5 required=5.0 tests=DEAR_SOMETHING,
>   
> FORGED_RELAY_MUA_TO_MX,HTML_MESSAGE,RDNS_NONE,SPF_PASS,T_FILL_THIS_FORM_SHORT,
>   UNPARSEABLE_RELAY shortcircuit=no autolearn=disabled version=3.4.1


Sender address tidak masuk dalam daftar antispam whitelist no filtering
atau whitelist contact recipient v...@pttdp.com.

Kalau setting antispamnya benar, saat mail di reply oleh authenticate
sender v...@pttdp.com alamat bharat.raj...@morepen.com akan masuk dalam
whitelist contact user v...@pttdp.com sehingga mail berikutnya dari
sender itu ke v...@pttdp.com akan bypass antispam content filtering.

> Subject: [***SPAM*** Score/Req: 06.5/5.0] Re: CPhI China 2019 - Meeting 
> schedule

Sebaiknya subject tag dikosongkan, agar tidak membingungkan user/recipient.

http://mdaemon.dutaint.co.id/mdaemon/19.0/index.html?sf_spam_filtering.htm


setting lengkap antispam bisa lihat ke arsip


https://www.mail-archive.com/mdaemon-l@dutaint.com/msg39757.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg39756.html

khusus pakai domainpop maka perlu dibuatkan message process content
filtering untuk spam score > +12.0 untuk dihapus.



-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

I am who I am today because of the mistakes I made yesterday.
--- The Prolific Penman


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Ivan

Pak ini ada contoh kasusnya utk domain : Morepen.com

*HEADER TIDAK KENA SPAM : *
From - Tue Jun 11 12:30:06 2019

X-Account-Key: account1
X-UIDL: MD5080769:MSG:2088414:30744597:3968526086
X-Mozilla-Status: 1013
X-Mozilla-Status2: 
X-Mozilla-Keys:
X-MDAV-Result: clean
X-MDAV-Processed: webmail.pttdp.com, Tue, 11 Jun 2019 12:24:21 +0700
Return-path:
Received: from secure.emailsrvr.com [(184.106.54.10)] by pttdp.com 
(117.102.88.187) (MDaemon PRO v18.5.2)
with DomainPOP id md50002188374.msg; Tue, 11 Jun 2019 12:24:20 +0700
X-MDRemoteIP: 184.106.54.10
X-MDHelo:
X-MDArrival-Date: Tue, 11 Jun 2019 12:24:20 +0700
X-Return-Path:gaurav.lakh...@morepen.com
X-Envelope-From:gaurav.lakh...@morepen.com
X-MDaemon-Deliver-To:v...@pttdp.com
Delivered-To:gladia...@pttdp.com
Delivered-To:gladia...@pttdp.com
Received: from director7.mail.iad3b.rsapps.net ([172.31.255.6])
by backend21.mail.iad3b.rsapps.net with LMTP id gAQIIyA6/1wxYwAAyuEoYQ
for; Tue, 11 Jun 2019 01:20:32 -0400
Received: from proxy1.mail.iad3b.rsapps.net ([172.31.255.6])
by director7.mail.iad3b.rsapps.net with LMTP id +A4DIyA6/1yhYgAAJbq6dw
; Tue, 11 Jun 2019 01:20:32 -0400
Received: from smtp9.gate.iad3b ([172.31.255.6])
(using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
by proxy1.mail.iad3b.rsapps.net with LMTP id OGmRIiA6/1z8OAAALM5PBw
; Tue, 11 Jun 2019 01:20:32 -0400
X-Spam-Flag: NO
Authentication-Results:  smtp9.gate.iad3b.rsapps.net 
x-tls.subject="/C=US/ST=California/L=Mountain View/O=Google 
LLC/CN=smtp.gmail.com"; auth=pass (cipher=AES128-GCM-SHA256)
X-Virus-Scanned: OK
X-Orig-To:v...@pttdp.com
X-Originating-Ip: [209.85.167.46]
Authentication-Results: smtp9.gate.iad3b.rsapps.net; iprev=pass policy.iprev="209.85.167.46"; 
spf=pass smtp.mailfrom="gaurav.lakh...@morepen.com"  smtp.helo="mail-lf1-f46.google.com"; 
dkim=pass header.d=morepen.com; dmarc=none (p=nil; dis=none) header.from=morepen.com
X-Suspicious-Flag: NO
X-Classification-ID: 9f5ab1c0-8c08-11e9-af66-525400f4d366-1-1
Received: from [209.85.167.46] ([209.85.167.46:39213] 
helo=mail-lf1-f46.google.com)
by smtp9.gate.iad3b.rsapps.net 
(envelope-from)
(ecelerity 4.2.38.62370 r(:)) with ESMTPS (cipher=AES128-GCM-SHA256
subject="/C=US/ST=California/L=Mountain View/O=Google 
LLC/CN=smtp.gmail.com")
id CA/AF-16647-C1A3FFC5; Tue, 11 Jun 2019 01:20:32 -0400
Received: by mail-lf1-f46.google.com with SMTP id p24so8274014lfo.6
for; Mon, 10 Jun 2019 22:20:28 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=morepen.com; s=google;
h=mime-version:references:in-reply-to:from:date:message-id:subject:to
 :cc;
bh=mUuwUiI0omMfk3SRyL06RkcHjCVHmmFxewgllOXXUes=;
b=VJV+HNZajtxdak0cToRZ71SaCUfeDsPsPZHqiyAoa0s9Lk7s8NhuXCVL/E1u0Tgsg5
 M59hCIqUNXXQlSpIsTyejBz+Ob48vlpzGreQSWNLGTs4zV4NF4ReCszNII6TKA543M15
 LnJNxwHS3pJubSUepev3CsB96ShUi5/TYALtk=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20161025;
h=x-gm-message-state:mime-version:references:in-reply-to:from:date
 :message-id:subject:to:cc;
bh=mUuwUiI0omMfk3SRyL06RkcHjCVHmmFxewgllOXXUes=;
b=a/jSnE8qtxmf/+b96ID2GhQhfxkkTcC1C2UmhfwgHBVrru9+NoK9kP0CVnTwVHmFc3
 82uGsbHc2HiQVtjKaxUfdsm6iTlhR15vtcJx9Q222Wlv9ag5vM9vG4aBSF75Dcy5mGNH
 aRdpYqc9HJPJiD0QnQbd7kOH4KEJrePmh8+tq1HQ3kzcGoxxKRw2B0dIMmGM2ZHKYrDt
 EdycIceeOIDjPrUdfsfVbN+DiDAgOuifVxtVtNNvYvAByE6DoVKZyZYERYidHq0MtwyX
 1likaCM/S8BGOAgon6vZmIGEgBMTBuiElO0aynnQTnLmB6Mz4twsB9koFKwGGxbKHlRm
 NhyQ==
X-Gm-Message-State: APjAAAUIaEWyrlsXtWxQV5olePVX2WvAAMjvNNOkBxgWIluc6jB3s9AS
pXHh9zSoU5MCFCBMZ/WVy1ARNc3ZgDOKpt5Mwb8TQOMV
X-Google-Smtp-Source: 
APXvYqwXAGl8tJngiFgseLn3Yy/PJ7D9ZnceriLj4Kfv6cqGz8v+wjhHBkZ4BqB7whzg5uXl1XCItyB0+i/P+YjZry0=
X-Received: by 2002:a19:4b4c:: with SMTP id y73mr36107046lfa.129.1560230425299;
 Mon, 10 Jun 2019 22:20:25 -0700 (PDT)
MIME-Version: 1.0
References:
 
 <5e825f92-540a-54ca-e373-b708879f6...@pttdp.com>  

 <4a874b31-8d32-a349-2244-264498a7f...@pttdp.com>  

 
In-Reply-To:
From: Gaurav Lakhani
Date: Tue, 11 Jun 2019 10:50:11 +0530
Message-ID:
Subject: Re: RQ: Desloratadin
To: Vivi
Cc: NOVI, Bharat Rajdev,
"arpana.gupta"


*HEADER KENA SPAM :***
From - Wed Jun 12 18:15:51 2019
X-Account-Key: account5
X-UIDL: MD5036696:MSG:46682:30744846:4007288454
X-Mozilla-Status: 1001
X-Mozilla-Status2: 
X-Mozilla-Keys:
X-MDAV-Result: clean
X-MDAV-Processed: webmail.pttdp.com, Wed, 12 Jun 2019 18:06:49 +0700
X-Spam-Processed: webmail.pttdp.com, Wed, 12 Jun 2019 18:06:48 +0700
Return-path: 
X-Spam-Flag: YES
X-Spam-Level: **
X-Spam-Status: Yes, score=6.5 required=5.0 tests=DEAR_SOMETHING,

FORGED_RELAY_MUA_TO_MX,HTML_MESSAGE,RDNS_NONE,SPF_PASS,T_FILL_THIS_FORM_SHORT,
UNPARSEABLE_RELAY shortcircuit=no 

[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Ivan

On 12/06/19 15:18, Syafril Hermansyah wrote:

Ini normal saja kalau untuk domainpop.
Yang tidak normal hanya spamscore threshold yang terlalu kecil (+4.3).


Sebaiknya spam score threshold gunakan standar saja.

http://mdaemon.dutaint.co.id/mdaemon/19.0/index.html?sf_spam_filtering.htm

Yes Pak saya coba ubah ke 5 scorenya


Dan action of spam (Fate of Spam) untuk domainpop user adalah

[x] ...put spam in the spam trap public folder

Karena domainpop tidak bisa melakukan rejection, maka sebaiknya buat CF
rule if spam filter score greater than +12.0 then delete the message
(atau move to bad queue).

http://mdaemon.dutaint.co.id/mdaemon/19.0/index.html?cf_creating_a_new_content_filter_rule.htm
Utk ini sejak dulu sudah saya buat CF frwd ke email admin utk dicek dulu 
baru didelete


Rgds,
--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Syafril Hermansyah
On 12/06/19 13.44, Ivan (bluesky1...@gmail.com) wrote:
> Ini Pak salah satu headernya
> 
> X-Spam-Status: Yes, score=5.4 required=4.3 tests=FORGED_RELAY_MUA_TO_MX,
>   
> HTML_MESSAGE,RDNS_NONE,SPF_NEUTRAL,T_FILL_THIS_FORM_SHORT,UNPARSEABLE_RELAY
>   shortcircuit=no autolearn=disabled version=3.4.1
> X-Spam-Report: 
>   *  3.5 FORGED_RELAY_MUA_TO_MX No description available.
>   *  0.7 SPF_NEUTRAL SPF: sender does not match SPF record (neutral)
>   *  0.0 HTML_MESSAGE BODY: HTML included in message
>   *  0.0 UNPARSEABLE_RELAY Informational: message has unparseable relay 
> lines
>   *  1.3 RDNS_NONE Delivered to internal network by a host with no rDNS
>   *  0.0 T_FILL_THIS_FORM_SHORT Fill in a short form with personal
>   *  information


Ini normal saja kalau untuk domainpop.
Yang tidak normal hanya spamscore threshold yang terlalu kecil (+4.3).


Sebaiknya spam score threshold gunakan standar saja.

http://mdaemon.dutaint.co.id/mdaemon/19.0/index.html?sf_spam_filtering.htm

Dan action of spam (Fate of Spam) untuk domainpop user adalah

[x] ...put spam in the spam trap public folder

Karena domainpop tidak bisa melakukan rejection, maka sebaiknya buat CF
rule if spam filter score greater than +12.0 then delete the message
(atau move to bad queue).

http://mdaemon.dutaint.co.id/mdaemon/19.0/index.html?cf_creating_a_new_content_filter_rule.htm





-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Learning without thought is labor lost; thought without learning is
perilous.
--- Confucius (551 BC - 479 BC), The Confucian Analects


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] Host screening refused

2019-06-12 Terurut Topik Syafril Hermansyah
On 12/06/19 14.28, Rievo Niemrod E (edp.r...@ptbmi.com) wrote:
> Pak Syafril mohon bantuannya, ada user kami yang tidak bisa menerima
> email dari luar
> berikut log SMTP – (IN) :


> Menambahkan “ all authsmtp77.register.it  accept “ di host Screen 


Yang diatas ini lebih benar.


-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Don’t worry about failures, worry about the chances you miss when you
don’t even try.
--- Jack Canfield


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] Host screening refused

2019-06-12 Terurut Topik Rievo Niemrod E
Selamat Siang

Pak Syafril mohon bantuannya, ada user kami yang tidak bisa menerima email dari 
luar
berikut log SMTP – (IN) :

Wed 2019-05-29 23:46:52.039: --
Wed 2019-05-29 23:46:50.398: [877925] Session 877925; child 0001
Wed 2019-05-29 23:46:50.398: [877925] Accepting SMTP connection from 
195.110.122.162:39897 to 172.16.0.6:25
Wed 2019-05-29 23:46:50.400: [877925] --> 220 bb.ptbmi.com ESMTP MDaemon 
18.5.2; Wed, 29 May 2019 23:46:50 +0700
Wed 2019-05-29 23:46:50.574: [877925] <-- EHLO authsmtp.register.it
Wed 2019-05-29 23:46:50.575: [877925] --> 250-bb.ptbmi.com Hello 
authsmtp.register.it [195.110.122.162], pleased to meet you
Wed 2019-05-29 23:46:50.575: [877925] --> 250-ETRN
Wed 2019-05-29 23:46:50.575: [877925] --> 250-AUTH LOGIN PLAIN
Wed 2019-05-29 23:46:50.575: [877925] --> 250-8BITMIME
Wed 2019-05-29 23:46:50.575: [877925] --> 250-ENHANCEDSTATUSCODES
Wed 2019-05-29 23:46:50.576: [877925] --> 250-STARTTLS
Wed 2019-05-29 23:46:50.576: [877925] --> 250 SIZE 3584
Wed 2019-05-29 23:46:50.748: [877925] <-- STARTTLS
Wed 2019-05-29 23:46:50.748: [877925] --> 220 2.7.0 Ready to start TLS
Wed 2019-05-29 23:46:51.107: [877925] SSL negotiation successful (TLS 1.2, 521 
bit key exchange, 256 bit AES encryption)
Wed 2019-05-29 23:46:51.283: [877925] <-- EHLO authsmtp.register.it
Wed 2019-05-29 23:46:51.283: [877925] --> 250-bb.ptbmi.com Hello 
authsmtp.register.it [195.110.122.162], pleased to meet you
Wed 2019-05-29 23:46:51.283: [877925] --> 250-ETRN
Wed 2019-05-29 23:46:51.283: [877925] --> 250-AUTH LOGIN PLAIN
Wed 2019-05-29 23:46:51.283: [877925] --> 250-8BITMIME
Wed 2019-05-29 23:46:51.283: [877925] --> 250-ENHANCEDSTATUSCODES
Wed 2019-05-29 23:46:51.283: [877925] --> 250 SIZE 3584
Wed 2019-05-29 23:46:51.460: [877925] <-- MAIL FROM: 
SIZE=104784
Wed 2019-05-29 23:46:51.463: [877925] Performing PTR lookup 
(162.122.110.195.IN-ADDR.ARPA)
Wed 2019-05-29 23:46:51.676: [877925] *  D=162.122.110.195.IN-ADDR.ARPA 
TTL=(15) PTR=[authsmtp77.register.it]
Wed 2019-05-29 23:46:51.854: [877925] *  D=authsmtp77.register.it TTL=(120) 
A=[195.110.122.162]
Wed 2019-05-29 23:46:51.854: [877925]  End PTR results
Wed 2019-05-29 23:46:51.856: [877925] Performing IP lookup 
(authsmtp.register.it)
Wed 2019-05-29 23:46:52.036: [877925] *  D=authsmtp.register.it TTL=(1440) 
A=[81.88.48.66]
Wed 2019-05-29 23:46:52.036: [877925]  End IP lookup results
Wed 2019-05-29 23:46:52.040: [877925] --> 550 5.7.1 Sender unknown
Wed 2019-05-29 23:46:52.040: [877925] Host screening refused connection to 
172.16.0.6:25 from authsmtp77.register.it [195.110.122.162:39897] (matched to 
line "all authsmtp#.register.it refuse")
Wed 2019-05-29 23:46:52.041: [877925] SMTP session terminated (Bytes in/out: 
770/3869)
Wed 2019-05-29 23:46:52.041: --


Action
Hapus “ all authsmtp77.register.it  refuse “ di host Screen 
atau
Menambahkan “ all authsmtp77.register.it  accept “ di host Screen 

Mohon pencerahannya 

Terimakasih
Rievo
--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1


[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Ivan

On 12/06/19 13:14, Syafril Hermansyah wrote:

Kirim dulu message header yang setelah tanggal 10 Juni 2019 kesini.

Ini Pak salah satu headernya

From - Tue Jun 11 10:47:52 2019
X-Account-Key: account5
X-UIDL: MD5036608:MSG:89148:30744583:424788230
X-Mozilla-Status: 1001
X-Mozilla-Status2: 
X-Mozilla-Keys:
X-MDAV-Result: clean
X-MDAV-Processed: webmail.pttdp.com, Tue, 11 Jun 2019 10:38:13 +0700
X-Spam-Processed: webmail.pttdp.com, Tue, 11 Jun 2019 10:38:12 +0700
Return-path: 
X-Spam-Flag: YES
X-Spam-Level: *
X-Spam-Status: Yes, score=5.4 required=4.3 tests=FORGED_RELAY_MUA_TO_MX,

HTML_MESSAGE,RDNS_NONE,SPF_NEUTRAL,T_FILL_THIS_FORM_SHORT,UNPARSEABLE_RELAY
shortcircuit=no autolearn=disabled version=3.4.1
X-Spam-Report:
*  3.5 FORGED_RELAY_MUA_TO_MX No description available.
*  0.7 SPF_NEUTRAL SPF: sender does not match SPF record (neutral)
*  0.0 HTML_MESSAGE BODY: HTML included in message
*  0.0 UNPARSEABLE_RELAY Informational: message has unparseable relay 
lines
*  1.3 RDNS_NONE Delivered to internal network by a host with no rDNS
*  0.0 T_FILL_THIS_FORM_SHORT Fill in a short form with personal
*  information
X-Spam-Checker-Version: SpamAssassin 3.4.1 (2015-04-28)
Received: from secure.emailsrvr.com [(146.20.161.10)] by pttdp.com 
(117.102.88.187) (MDaemon PRO v18.5.2)
with DomainPOP id md50002188159.msg; Tue, 11 Jun 2019 10:38:10 +0700
X-MDRemoteIP: 146.20.161.10
X-MDHelo:
X-MDArrival-Date: Tue, 11 Jun 2019 10:38:10 +0700
X-Return-Path: rd_formul...@zenith-pharma.com
X-Envelope-From: rd_formul...@zenith-pharma.com
X-MDaemon-Deliver-To: ivanleona...@pttdp.com
Delivered-To: gladia...@pttdp.com
Delivered-To: gladia...@pttdp.com
Received: from director10.mail.iad3b.rsapps.net ([172.31.255.6])
by backend21.mail.iad3b.rsapps.net with LMTP id yJXTIzoh/1zlZwAAyuEoYQ
for ; Mon, 10 Jun 2019 23:34:18 -0400
Received: from proxy18.mail.iad3b.rsapps.net ([172.31.255.6])
by director10.mail.iad3b.rsapps.net with LMTP id uCV3Izoh/1yPVAAA+q2Skg
; Mon, 10 Jun 2019 23:34:18 -0400
Received: from smtp8.gate.iad3b ([172.31.255.6])
(using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
by proxy18.mail.iad3b.rsapps.net with LMTP id 4DhQIzoh/1xUKAAA3NpJmQ
; Mon, 10 Jun 2019 23:34:18 -0400
Authentication-Results:  smtp8.gate.iad3b.rsapps.net 
x-tls.subject="/C=US/ST=California/L=Mountain View/O=Google 
LLC/CN=smtp.gmail.com"; auth=pass (cipher=AES128-GCM-SHA256)
X-Virus-Scanned: OK
X-Orig-To: her...@pttdp.com
X-Originating-Ip: [209.85.166.180]
Authentication-Results: smtp8.gate.iad3b.rsapps.net; iprev=pass policy.iprev="209.85.166.180"; 
spf=neutral smtp.mailfrom="rd_formul...@zenith-pharma.com" 
smtp.helo="mail-it1-f180.google.com"; dkim=pass header.d=zenith-pharma-com.20150623.gappssmtp.com; 
dmarc=none (p=nil; dis=none) header.from=zenith-pharma.com
X-Suspicious-Flag: NO
X-Classification-ID: cb0216f6-8bf9-11e9-8321-5254005eee35-1-1
Received: from [209.85.166.180] ([209.85.166.180:55393] 
helo=mail-it1-f180.google.com)
by smtp8.gate.iad3b.rsapps.net (envelope-from 
)
(ecelerity 4.2.38.62370 r(:)) with ESMTPS (cipher=AES128-GCM-SHA256
subject="/C=US/ST=California/L=Mountain View/O=Google 
LLC/CN=smtp.gmail.com")
id D5/0E-12296-A312FFC5; Mon, 10 Jun 2019 23:34:18 -0400
Received: by mail-it1-f180.google.com with SMTP id i21so2539087ita.5
for ; Mon, 10 Jun 2019 20:34:18 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=zenith-pharma-com.20150623.gappssmtp.com; s=20150623;
h=mime-version:references:in-reply-to:from:date:message-id:subject:to
 :cc;
bh=YxCaltf9cLcxa8XhjE3I5i4KM8Xm+oLJSBtxFK4rfV4=;
b=vb7BkQoFPJNR61/K2bexwWDjtKq3z8Joqc6hT9b54Npo+KdexBHKEbFYbeHQ267pwj
 Bj8nxAtx6yyTCtKdg0SXdl2XQn6rpstae41SAqG+dBXDjqOMVSl+x2zzEcgGaoD7z89L
 bz88TSmKY5FuMFkloiThEhE0onto8MJpbHwstcUVb8RM/kjyHEkzQ0RRufR3uGeBgwws
 gDH9savgo9lnxyUJxS01OzdkHqC/Spg3RSgegkgelkiwja99v4UyWJSCKCUn2YG2aGjZ
 NZ9jyteIhtLsCpmFo1sDtjI+5bvvaT3BRa9TNPe/yv2YrwsUQqKyM/PWVCV5LyMw/BCp
 00xQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20161025;
h=x-gm-message-state:mime-version:references:in-reply-to:from:date
 :message-id:subject:to:cc;
bh=YxCaltf9cLcxa8XhjE3I5i4KM8Xm+oLJSBtxFK4rfV4=;
b=bp/sRZwNCq5/cAbvZ+9pWDdcD2z2Cxh2KQA95HbxKfwVoGxTjSUWUhb2F/F8zMbFL8
 pFAxmpodkSqw0JKrqY1iEDhAQVfgRAnefBW6TVMWrOeZ9wAofVznf2FaHawh16hZ5j96
 VY5FBa2qj+48dRyl2lHOZHVHWbkCTzAK1930L71BG48NE3B/3wDXhovpsF3r27muJJ8L
 sD68p82C4qnxMlGiggWiXq9ROzbNsSQYTVOShWTqZJ77NIapWCsMvg7fO634Ii6K65mp
 YJIA6s/6tVfwSk2gIgjd41aQaKNikJtZVwJP45eleuErtgGYlIx8ksggm5u7M46lkdwA
 HNdA==
X-Gm-Message-State: APjAAAX/cqLMWrJOrAddqrGu6UQHCAtrL+0xhmxKvR2R2/jFpZAzVSvU

[mdaemon-l] Spam Email

2019-06-12 Terurut Topik Syafril Hermansyah
On 12/06/19 09.19, Anjas Wahyu Nurhayanto (an...@inticipta.co.id) wrote:
> berikut log dari spam email yang masuk ke inbox user kami. mohon
> bantuannya untuk dilakukan pengecekan :
> 
> Tue 2019-06-11 15:50:53.734: 02: <-- EHLO comcenter.at
> Tue 2019-06-11 15:50:53.921: 02: <-- MAIL FROM: SIZE=3479


Diblock saja sender address di blacklist contact webmail user
b...@aksball.co.id


-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Change is the end result of all true learning.
--- Leo Buscaglia


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1




[mdaemon-l] SpamScore

2019-06-12 Terurut Topik Syafril Hermansyah
On 12/06/19 08.52, Ivan (bluesky1...@gmail.com) wrote:
>> Pakai MDaemon versi berapa sebelum dan setelah 10 Juni 2019?
> Versi MD tidak berubah


Kalau begitu mestinya tidak ada perubahan spamscore.


>>> Sebelum 10 june jarang sekali email valid dianggap spam / dapat
>>> spamscore tinggi
>>
>> Bisa diperlihatkan message header dari sender yang sama sebelum dan
>> sesudah 10 Juni 2019
> yg sebelum 10 june mesti cari2 dulu pak krn ini email punya user bukan
> email utk saya


Kirim dulu message header yang setelah tanggal 10 Juni 2019 kesini.


-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.0.2-64 bit Beta D
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Learning is not attained by chance, it must be sought for with ardour
and attended to with diligence.
--- Abigail Adams


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.0.1, SG 6.0.1