[Mdaemon-L] FW: WARNING: Message delivery failed

2022-03-01 Terurut Topik Katon Purwanto
Dear Pak Syafril,



ok pak.







Terima Kasih,


-Katon Purwanto-
CARAKA Logistics & Distribution
021-30022787,  | www.carakagroup.com




From: "Syafril Hermansyah via Mdaemon-L" 
To: Mdaemon-L@dutaint.com
Date: Wed, 2 Mar 2022 11:03:14 +0700
Subject: [Mdaemon-L] FW: WARNING: Message delivery failed


Pada 02/03/22 10.41, Syafril Hermansyah via Mdaemon-L menulis:
>
> Agar kedepannya kasus hijacking bisa diminimalisir lakukan sbb:
>
> 1. Upgrade ke MDaemon versi 21.5.2
>
> Hacker selalu mengupdate teknik dan teknik hackingnya sehingga pengelola
> mail server juga perlumengupdate versi MDaemonnya yang sudah
> mengantisipasi teknik dan trik hacking tersebut.
>
> MDaemon versi terkini bisa diunduh dari sini
>
> https://www.altn.com/Downloads/MDaemon-Mail-Server-Free-Trial/
>
> 2. Terapkan tips berikut
>
> https://www.mail-archive.com/mdaemon-l@dutaint.com/msg44530.html
> https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47878.html
>
> https://www.mail-archive.com/mdaemon-l@dutaint.com/msg45611.html
> https://www.mail-archive.com/mdaemon-l@dutaint.com/msg45619.html


Tambahan

>   [27458339] Transfer Complete
>   [27458339] <-- 550-5.7.26 This message does not have authentication 
information or fails to
>   [27458339] <-- 550-5.7.26 pass authentication checks. To best protect 
our users from spam, the
>   [27458339] <-- 550-5.7.26 message has been blocked. Please visit
>   [27458339] <-- 550-5.7.26  
https://support.google.com/mail/answer/81126#authentication for more
>   [27458339] <-- 550 5.7.26 information. 
z17-20020aa7889100b004f10a245d0bsi11962501pfe.231 - gsmtp


Tolakkan ini terjadi karena domain carakagroup.com tidak mengaktifkan
DNS SPF record yang saat ini berindak sebagai "domain authentication".

Aktifkan DNS SPF record sbb:

carakagroup.com. TXT   "v=spf1 mx include:relayhost.dutaint.com -all"

di ns1.idwebhost.id

Lebih rinci bisa dilihat disini


https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47287.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47288.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47289.html

Sekalian diaktifkan DMARC record agar tidak sering terima spam seolah
dari domain sendiri

dmarc.carakagroup.com.   10800   IN   TXT   "v=DMARC1; p=reject; aspf=s;
sp=none; rua=mailto:postmas...@carakagroup.com";


Lebih rinxi bisa lihat disini

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47356.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47387.html

--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 21.5.2 64 bit
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Never give up on anything.
If you fail, try, try and try again.
You are learning the best ways of doing things.
   --- Lailah Gifty Akita


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 21.5.2, SecurityGateway 8.5.0




===
CONFIDENTIALITY NOTICE
This message (including any attachments)contains information that may be 
confidential. Unless you are the intended recipient (or authorized to 
receive for the intended recipient), you may not read, print, retain, use, 
copy, distribute or disclose to anyone the message or any information 
contained in the message. If you have received the message in error, 
please advise the sender by reply e-mail, and destroy all copies of 
the original message (including any attachments).
===

-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 21.5.2, SecurityGateway 8.5.0



[Mdaemon-L] FW: WARNING: Message delivery failed

2022-03-01 Terurut Topik Syafril Hermansyah via Mdaemon-L

Pada 02/03/22 10.41, Syafril Hermansyah via Mdaemon-L menulis:


Agar kedepannya kasus hijacking bisa diminimalisir lakukan sbb:

1. Upgrade ke MDaemon versi 21.5.2

Hacker selalu mengupdate teknik dan teknik hackingnya sehingga pengelola 
mail server juga perlumengupdate versi MDaemonnya yang sudah 
mengantisipasi teknik dan trik hacking tersebut.


MDaemon versi terkini bisa diunduh dari sini

https://www.altn.com/Downloads/MDaemon-Mail-Server-Free-Trial/

2. Terapkan tips berikut

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg44530.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47878.html

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg45611.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg45619.html



Tambahan


  [27458339] Transfer Complete
  [27458339] <-- 550-5.7.26 This message does not have authentication 
information or fails to
  [27458339] <-- 550-5.7.26 pass authentication checks. To best protect our 
users from spam, the
  [27458339] <-- 550-5.7.26 message has been blocked. Please visit
  [27458339] <-- 550-5.7.26  
https://support.google.com/mail/answer/81126#authentication for more
  [27458339] <-- 550 5.7.26 information. 
z17-20020aa7889100b004f10a245d0bsi11962501pfe.231 - gsmtp



Tolakkan ini terjadi karena domain carakagroup.com tidak mengaktifkan 
DNS SPF record yang saat ini berindak sebagai "domain authentication".


Aktifkan DNS SPF record sbb:

carakagroup.com. TXT"v=spf1 mx include:relayhost.dutaint.com -all"

di ns1.idwebhost.id

Lebih rinci bisa dilihat disini


https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47287.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47288.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47289.html

Sekalian diaktifkan DMARC record agar tidak sering terima spam seolah 
dari domain sendiri


dmarc.carakagroup.com.	10800	IN	TXT	"v=DMARC1; p=reject; aspf=s; 
sp=none; rua=mailto:postmas...@carakagroup.com";



Lebih rinxi bisa lihat disini

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47356.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47387.html

--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 21.5.2 64 bit
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Never give up on anything.
If you fail, try, try and try again.
You are learning the best ways of doing things.
--- Lailah Gifty Akita


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 21.5.2, SecurityGateway 8.5.0




[Mdaemon-L] FW: WARNING: Message delivery failed

2022-03-01 Terurut Topik Syafril Hermansyah via Mdaemon-L

Pada 02/03/22 09.36, Katon Purwanto menulis:
mohon dibantu salah satu user kami menerima email berikut dengan jumlah 
yang banyak padahal user tidak mengirimkan

email ke alamat tersebut, mohon dibantu apa yang saya lakukan.



Kelihatannya akun nurhay...@carakagroup.com terhijack (compromise).
Ganti password akun nurhay...@carakagroup.com dengan strong password, 
prosedurnya sbb:


1. Pastikan strong password requirement aktif

http://mdaemon.dutaint.co.id/mdaemon/21.5.0/passwords.html

[x] Require strong passwords

2. Ganti password akun nurhay...@carakagroup.com dengan standard 
password perusahaan yang mudah diucapkan, misalkan Caraka@321


http://mdaemon.dutaint.co.id/mdaemon/21.5.0/ae_account.html

pastikan menu berikut aktif saat melakukan pergantian password

[x] Account must change mailbox password before it can connect

3. Minta user nurhay...@carakagroup.com login ke webmail 
(http://mail.carakagroup.com) menggunakan password standard yang 
diberikan diatas.


Segera setelah login maka akan diminta mengganti passwordnya, gunakan 
strong password generator sebagai petunjuk


https://www.lastpass.com/password-generator

Password Length: 8
[x] easy to read
[x] Uppercase
[x] Lowercase
[x] Number
[x] Symbol

Agar kedepannya kasus hijacking bisa diminimalisir lakukan sbb:

1. Upgrade ke MDaemon versi 21.5.2

Hacker selalu mengupdate teknik dan teknik hackingnya sehingga pengelola 
mail server juga perlumengupdate versi MDaemonnya yang sudah 
mengantisipasi teknik dan trik hacking tersebut.


MDaemon versi terkini bisa diunduh dari sini

https://www.altn.com/Downloads/MDaemon-Mail-Server-Free-Trial/

2. Terapkan tips berikut

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg44530.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg47878.html

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg45611.html
https://www.mail-archive.com/mdaemon-l@dutaint.com/msg45619.html




--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 21.5.2 64 bit
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Never give up on anything.
If you fail, try, try and try again.
You are learning the best ways of doing things.
--- Lailah Gifty Akita


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 21.5.2, SecurityGateway 8.5.0




[Mdaemon-L] FW: WARNING: Message delivery failed

2022-03-01 Terurut Topik Katon Purwanto
Dear pak Syafril,



mohon dibantu salah satu user kami menerima email berikut dengan jumlah yang 
banyak padahal user tidak mengirimkan

email ke alamat tersebut, mohon dibantu apa yang saya lakukan.







Terima Kasih,


-Katon Purwanto-
CARAKA Logistics & Distribution
021-30022787,  | www.carakagroup.com




From: "nurhayati" 
To: 
Date: Wed, 2 Mar 2022 09:28:46 +0700
Subject: FW: WARNING: Message delivery failed


Iki yo mas

-Original Message-
From: MDaemon at dds30.dutaservisindo.co.id 
[mailto:postmas...@carakagroup.com]
Sent: Tuesday, March 1, 2022 4:25 PM
To: prvs=10591c184c=nurhay...@carakagroup.com
Subject: WARNING: Message delivery failed

==
=  Greetings from the MDaemon mail system at dds30.dutaservisindo.co.id  = 
==

The following message:

 Session-ID: 27458339 (specific to this delivery attempt)
   Queue-ID: pd3501004407370.msg
 Message-ID: mdaemon3919202203011624.aa2426...@mail.carakagroup.com

could not be delivered to the following recipient(s):

 22leeh...@gmail.com (unrecoverable error)

despite one or more unsuccessful attempts to do so.

No further delivery attempts will be made and the message has been removed 
from the queue.

The original message headers may follow at the end of this report.  For 
information on DSN messages see http://www.altn.com/dsn/.

Please quote the Queue-ID, Session-ID, and Message-ID found above in any 
inquiries regarding this message.


=  Session Transcript  =


  [27458339] REMOTE message: pd3501004407370.msg
  [27458339] *  Session 27458339; child 0013
  [27458339] *  From: nurhay...@carakagroup.com
  [27458339] *  To: 22leeh...@gmail.com
  [27458339] *  Subject: Report Oshop 2022
  [27458339] *  Message-ID: 

  [27458339] *  Size: 43583; 
  [27458339] MTA-STS policy for gmail.com found in cache
  [27458339] *  version: STSv1
  [27458339] *  mode: enforce
  [27458339] *  mx: gmail-smtp-in.l.google.com
  [27458339] *  mx: *.gmail-smtp-in.l.google.com
  [27458339] *  max_age: 86400
  [27458339] Resolving MX record for gmail.com (DNS Server: 
103.141.180.216)...
  [27458339] *  P=005 S=000 D=gmail.com TTL=(7) 
MX=[gmail-smtp-in.l.google.com]
  [27458339] *  P=010 S=004 D=gmail.com TTL=(7) 
MX=[alt1.gmail-smtp-in.l.google.com]
  [27458339] *  P=020 S=003 D=gmail.com TTL=(7) 
MX=[alt2.gmail-smtp-in.l.google.com]
  [27458339] *  P=030 S=001 D=gmail.com TTL=(7) 
MX=[alt3.gmail-smtp-in.l.google.com]
  [27458339] *  P=040 S=002 D=gmail.com TTL=(7) 
MX=[alt4.gmail-smtp-in.l.google.com]
  [27458339] Attempting SMTP connection to gmail-smtp-in.l.google.com
  [27458339] Resolving A record for gmail-smtp-in.l.google.com (DNS Server: 
103.141.180.216)...
  [27458339] *  D=gmail-smtp-in.l.google.com TTL=(4) A=[172.217.194.27]
  [27458339] Attempting SMTP connection to 172.217.194.27:25
  [27458339] Waiting for socket connection...
  [27458339] *  Connection established 103.141.180.220:12862 --> 
172.217.194.27:25
  [27458339] Waiting for protocol to start...
  [27458339] <-- 220 mx.google.com ESMTP 
z17-20020aa7889100b004f10a245d0bsi11962501pfe.231 - gsmtp
  [27458339] --> EHLO dds30.dutaservisindo.co.id
  [27458339] <-- 250-mx.google.com at your service, [103.141.180.220]
  [27458339] <-- 250-SIZE 157286400
  [27458339] <-- 250-8BITMIME
  [27458339] <-- 250-STARTTLS
  [27458339] <-- 250-ENHANCEDSTATUSCODES
  [27458339] <-- 250-PIPELINING
  [27458339] <-- 250-CHUNKING
  [27458339] <-- 250 SMTPUTF8
  [27458339] --> STARTTLS
  [27458339] <-- 220 2.0.0 Ready to start TLS
  [27458339] SSL negotiation successful (TLS 1.2, 256 bit key exchange, 128 
bit AES encryption)
  [27458339] SSL certificate is valid (matches gmail-smtp-in.l.google.com 
and is signed by recognized CA)
  [27458339] MTA-STS success for gmail.com
  [27458339] TLS Reporting TXT record (from cache): 
v=TLSRPTv1;rua=mailto:sts-repo...@google.com
  [27458339] --> EHLO dds30.dutaservisindo.co.id
  [27458339] <-- 250-mx.google.com at your service, [103.141.180.220]
  [27458339] <-- 250-SIZE 157286400
  [27458339] <-- 250-8BITMIME
  [27458339] <-- 250-ENHANCEDSTATUSCODES
  [27458339] <-- 250-PIPELINING
  [27458339] <-- 250-CHUNKING
  [27458339] <-- 250 SMTPUTF8
  [27458339] --> MAIL From: 
SIZE=43583
  [27458339] --> RCPT To:<22leeh...@gmail.com>
  [27458339] <-- 250 2.1.0 OK 
z17-20020aa7889100b004f10a245d0bsi11962501pfe.231 - gsmtp
  [27458339] <-- 250 2.1.5 OK 
z17-20020aa7889100b004f10a245d0bsi11962501pfe.231 - gsmtp
  [27458339] --> BDAT 43583 LAST
  [27458339] Sending  to 
[172.217.194.27]
  [27458339] Transfer Complete
  [27458339] <-- 550-5.7.26 This message does not have authentication 
information or fails to
  [27458339] <-- 550-5.7.26 pass authentication checks. To best protect our 
users from spam, the
  [27458339] <-- 550-5.7.26 message has been blocked. Please visit
  

[MDaemon-L] FW: WARNING: Message delivery failed

2015-03-18 Terurut Topik Syafril Hermansyah
On 2015-03-19 09:41, Ahmad Ardiansyah wrote:
> untuk permasalahan log dibawah ini, bagaimana ya solusinya pak?

> [879567] --> RCPT To:
>   [879567] <-- 550 Unrouteable address

Ini khas problem Exim MTA, umumnya karena masalah address/domain aliases.

Hubungi postmas...@cbn.net.id untuk klarifikasi masalah dan perbaikkannya.

-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 15.0-64bit, SP 4.5-64bit
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Mengeritik jauh lebih mudah daripada berbuat yg benar
-- Benymin Disraeli


-- 
--[MDaemon-L]
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server.

Netiket: http://www.netmeister.org/news/learn2quote
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Henti Langgan: Kirim mail ke MDaemon-L-unsubscribe [at] dutaint.com
Berlangganan: kirim mail ke MDaemon-L-subscribe [at] dutaint.com
Versi terakhir MD 15.0, SP 4.5, BES 2.0.2, OC 3.0, SG 3.0.2



[MDaemon-L] FW: WARNING: Message delivery failed

2015-03-18 Terurut Topik Ahmad Ardiansyah
pak syafril,

untuk permasalahan log dibawah ini, bagaimana ya solusinya pak? terima kasih

salam,
Ardiansyah


-Original Message-
From: "MDaemon at mail.kompas.tv" 
To: firandi.kur...@kompas.tv
Date: Wed, 18 Mar 2015 21:37:52 +0700
Subject: WARNING: Message delivery failed

==
=  Greetings from the MDaemon mail system at mail.kompas.tv  =
==

The following message:

 Session-ID: 879567 (specific to this delivery attempt)
   Queue-ID: pd5720956.msg
 Message-ID: wc20150318143632.561...@kompas.tv

could not be delivered to the following recipient(s):

 suh...@aditechmatra.co.id (unrecoverable error)

despite one or more unsuccessful attempts to do so.

No further delivery attempts will be made and the message has been removed
from the queue.

The original message headers follow at the end of this report.  For
information on DSN messages see http://www.altn.com/dsn/.

Please quote the Queue-ID, Session-ID, and Message-ID found above in any
inquiries regarding this message.


=  Session Transcript  =


  [879567] Session 879567; child 0001
  [879567] Parsing message 
  [879567] *  From: firandi.kur...@kompas.tv
  [879567] *  To: sa...@aditechmatra.co.id
  [879567] *  Subject: Meeting Invitation, March 20 ,2015
  [879567] *  Size (bytes): 4945
  [879567] *  Message-ID: 
  [879567] *  Route slip host: aditechmatra.co.id
  [879567] *  Route slip port: 25
  [879567] Resolving MX record for aditechmatra.co.id (DNS Server:
202.146.0.5)...
  [879567] *  P=010 S=000 D=aditechmatra.co.id TTL=(1438) MX=[
mx-corp.cbn.net.id]
  [879567] Attempting SMTP connection to mx-corp.cbn.net.id
  [879567] Resolving A record for mx-corp.cbn.net.id (DNS Server:
202.146.0.5)...
  [879567] *  D=mx-corp.cbn.net.id TTL=(140) A=[210.210.188.27]
  [879567] *  D=mx-corp.cbn.net.id TTL=(140) A=[202.158.81.27]
  [879567] Randomly picked 210.210.188.27 from list of possible hosts
  [879567] Attempting SMTP connection to 210.210.188.27:25
  [879567] Waiting for socket connection...
  [879567] *  Connection established 202.146.0.67:50273 -->
210.210.188.27:25
  [879567] Waiting for protocol to start...
  [879567] <-- 220 mx.cbn.net.id ESMTP
  [879567] --> EHLO mail.kompas.tv
  [879567] <-- 250-mx.cbn.net.id Hello mail.kompas.tv [202.146.0.67]
  [879567] <-- 250-SIZE 26214400
  [879567] <-- 250-8BITMIME
  [879567] <-- 250-PIPELINING
  [879567] <-- 250 HELP
  [879567] --> MAIL From: SIZE=4945
  [879567] <-- 250 OK
  [879567] --> RCPT To:
  [879567] <-- 550 Unrouteable address
  [879567] --> QUIT


=End Transcript=



[image: http://promo.kompas.tv/images/e-mail.gif]

[image: http://promo.kompas.tv/images/e-mail.gif]

-- 
--[MDaemon-L]
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server.

Netiket: http://www.netmeister.org/news/learn2quote
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Henti Langgan: Kirim mail ke MDaemon-L-unsubscribe [at] dutaint.com
Berlangganan: kirim mail ke MDaemon-L-subscribe [at] dutaint.com
Versi terakhir MD 15.0, SP 4.5, BES 2.0.2, OC 3.0, SG 3.0.2