[Mdaemon-L] Rejected for policy reasons

2023-03-19 Terurut Topik Syafril Hermansyah via Mdaemon-L

On 3/20/23 09:27, Bambang Setiawan via Mdaemon-L wrote:
Mohon bantuannya jika ada email yang di forward ke gmail dan di tolak 
oleh gmail ini karena policy yang seperti apa ya pak.




Mon 2023-03-20 09:13:01.143: [38590241] *  Connection established 
103.150.114.155:64041 --> 202.51.104.5:25
Mon 2023-03-20 09:13:01.143: [38590241] Waiting for protocol to start...
Mon 2023-03-20 09:13:01.178: [38590241] <-- 220 pmg.iforte.net.id ESMTP IFORTE 



Mon 2023-03-20 09:13:05.045: [38590241] <-- 554 5.7.1 Rejected for policy 
reasons (6011506417C12D616AB)



Mail ditolak karena domain authentication (DMARC) tidak sesuai.


Mon 2023-03-20 09:13:01.133: [38590241] <-- 550-5.7.26 Unauthenticated email 
from ericsson.com is not accepted due to
Mon 2023-03-20 09:13:01.133: [38590241] <-- 550-5.7.26 domain's DMARC policy. 
Please contact the administrator of
Mon 2023-03-20 09:13:01.133: [38590241] <-- 550-5.7.26 ericsson.com domain if 
this was a legitimate mail. Please visit
Mon 2023-03-20 09:13:01.133: [38590241] <-- 550-5.7.26 
https://support.google.com/mail/answer/2451690 to learn about the
Mon 2023-03-20 09:13:01.133: [38590241] <-- 550 5.7.26 DMARC initiative. bs124-20020a63288200b004fbcff506c5si3776454pgb.346 - gsmtp 



Mail ditolak karena domain authentication (DMARC) tidak sesuai, dpl 
DMARC forwarding tidak berjalan dengan benar.


Kesalahan ada di DNS SPF record domain persada.id.

$ host -t txt persada.id
persada.id descriptive text "v=spf1 +a +mx +ip4:103.150.114.155 
include:smtp.iforte.net.id -all"


$ host -t txt smtp.iforte.net.id
smtp.iforte.net.id descriptive text "v=spf1 a mx ptr all"

$ host -t mx smtp.iforte.net.id
smtp.iforte.net.id has no MX record


Coba diganti SPF recordnya menjadi

persada.id descriptive text "v=spf1 +a +mx +ip4:103.150.114.155 
include:iforte.net.id -all"





--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 23.0.1 Beta B
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Wisdom comes not from age, but from education and learning.
--- Anton Chekhov


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.0.0, SecurityGateway 9.0.1




[Mdaemon-L] Rejected for policy reasons

2023-03-19 Terurut Topik Bambang Setiawan via Mdaemon-L

Dear Pak Syafril,


Mohon bantuannya jika ada email yang di forward ke gmail dan di tolak 
oleh gmail ini karena policy yang seperti apa ya pak.



Terima kasih


Log sbb :

Mon 2023-03-20 09:13:02.685: --
Mon 2023-03-20 09:12:54.861: [38590241] REMOTE message: pd50001445626.msg
Mon 2023-03-20 09:12:54.861: [38590241] *  Session 38590241; child 0004
Mon 2023-03-20 09:12:54.863: [38590241] *  Forwarded from: 
m.tary...@persada.id
Mon 2023-03-20 09:12:54.863: [38590241] *  From: 
aditya.hardians...@ericsson.com

Mon 2023-03-20 09:12:54.863: [38590241] *  To: muhammadtaryad...@gmail.com
Mon 2023-03-20 09:12:54.863: [38590241] *  Subject: Re: Support Module 
Ericsson Recovery Stolen ==> 03BGR200/ 13BGR0050 CIMANGGUVILLA_MT
Mon 2023-03-20 09:12:54.863: [38590241] *  Message-ID: 

Mon 2023-03-20 09:12:54.863: [38590241] *  Size: 1165934; 

Mon 2023-03-20 09:12:54.867: [38590241] MTA-STS policy for gmail.com 
found in cache

Mon 2023-03-20 09:12:54.867: [38590241] *  version: STSv1
Mon 2023-03-20 09:12:54.867: [38590241] *  mode: enforce
Mon 2023-03-20 09:12:54.867: [38590241] *  mx: gmail-smtp-in.l.google.com
Mon 2023-03-20 09:12:54.867: [38590241] *  mx: *.gmail-smtp-in.l.google.com
Mon 2023-03-20 09:12:54.867: [38590241] *  max_age: 86400
Mon 2023-03-20 09:12:54.915: [38590241] Resolving MX record for 
gmail.com (DNS Server: 203.119.13.77)...
Mon 2023-03-20 09:12:54.938: [38590241] *  P=005 S=002 D=gmail.com 
TTL=(14) MX=[gmail-smtp-in.l.google.com]
Mon 2023-03-20 09:12:54.938: [38590241] *  P=010 S=003 D=gmail.com 
TTL=(14) MX=[alt1.gmail-smtp-in.l.google.com]
Mon 2023-03-20 09:12:54.938: [38590241] *  P=020 S=000 D=gmail.com 
TTL=(14) MX=[alt2.gmail-smtp-in.l.google.com]
Mon 2023-03-20 09:12:54.938: [38590241] *  P=030 S=004 D=gmail.com 
TTL=(14) MX=[alt3.gmail-smtp-in.l.google.com]
Mon 2023-03-20 09:12:54.938: [38590241] *  P=040 S=001 D=gmail.com 
TTL=(14) MX=[alt4.gmail-smtp-in.l.google.com]
Mon 2023-03-20 09:12:54.938: [38590241] Attempting SMTP connection to 
gmail-smtp-in.l.google.com
Mon 2023-03-20 09:12:54.939: [38590241] Resolving A record for 
gmail-smtp-in.l.google.com (DNS Server: 203.119.13.77)...
Mon 2023-03-20 09:12:54.947: [38590241] * D=gmail-smtp-in.l.google.com 
TTL=(2) A=[172.217.194.27]
Mon 2023-03-20 09:12:54.947: [38590241] Attempting SMTP connection to 
172.217.194.27:25

Mon 2023-03-20 09:12:54.947: [38590241] Waiting for socket connection...
Mon 2023-03-20 09:12:54.962: [38590241] *  Connection established 
103.150.114.155:64030 --> 172.217.194.27:25

Mon 2023-03-20 09:12:54.962: [38590241] Waiting for protocol to start...
Mon 2023-03-20 09:12:55.144: [38590241] <-- 220 mx.google.com ESMTP 
bs124-20020a63288200b004fbcff506c5si3776454pgb.346 - gsmtp

Mon 2023-03-20 09:12:55.147: [38590241] --> EHLO mail.persada.id
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-mx.google.com at your 
service, [103.150.114.155]

Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-SIZE 157286400
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-8BITMIME
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-STARTTLS
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-ENHANCEDSTATUSCODES
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-PIPELINING
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250-CHUNKING
Mon 2023-03-20 09:12:55.323: [38590241] <-- 250 SMTPUTF8
Mon 2023-03-20 09:12:55.323: [38590241] --> STARTTLS
Mon 2023-03-20 09:12:55.497: [38590241] <-- 220 2.0.0 Ready to start TLS
Mon 2023-03-20 09:12:55.513: [38590241] SSL negotiation successful (TLS 
1.2, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256)
Mon 2023-03-20 09:12:55.515: [38590241] SSL certificate is valid 
(matches gmail-smtp-in.l.google.com and is signed by recognized CA)

Mon 2023-03-20 09:12:55.515: [38590241] MTA-STS success for gmail.com
Mon 2023-03-20 09:12:55.515: [38590241] TLS Reporting TXT record (from 
cache): v=TLSRPTv1;rua=mailto:sts-repo...@google.com

Mon 2023-03-20 09:12:55.515: [38590241] --> EHLO mail.persada.id
Mon 2023-03-20 09:12:55.689: [38590241] <-- 250-mx.google.com at your 
service, [103.150.114.155]

Mon 2023-03-20 09:12:55.689: [38590241] <-- 250-SIZE 157286400
Mon 2023-03-20 09:12:55.689: [38590241] <-- 250-8BITMIME
Mon 2023-03-20 09:12:55.689: [38590241] <-- 250-ENHANCEDSTATUSCODES
Mon 2023-03-20 09:12:55.689: [38590241] <-- 250-PIPELINING
Mon 2023-03-20 09:12:55.689: [38590241] <-- 250-CHUNKING
Mon 2023-03-20 09:12:55.689: [38590241] <-- 250 SMTPUTF8
Mon 2023-03-20 09:12:55.689: [38590241] --> MAIL 
From: SIZE=1165934
Mon 2023-03-20 09:12:55.689: [38590241] --> RCPT 
To:

Mon 2023-03-20 09:12:55.689: [38590241] --> DATA
Mon 2023-03-20 09:12:55.862: [38590241] <-- 250 2.1.0 OK 
bs124-20020a63288200b004fbcff506c5si3776454pgb.346 - gsmtp
Mon 2023-03-20 09:12:55.937: [38590241] <-- 250 2.1.5 OK 
bs124-20020a63288200b004fbcff506c5si3776454pgb.346 - gsmtp
Mon 2023-03-20 09:12:55.937: [38590241] <-- 354  Go ahead 
bs124-20020a63288200b004fbcff506c5si3776454pgb.346 - gsmtp
Mon 2023-03-20 09:12:55.937: [38590241]