On 13/05/16 10:55, Andy Sujoto wrote:
> Walaupun sudah di set outbreak protection yang seperti diinformasikan
> bapak, namun sampai hari ini, email dari grup Mdaemon tetap belum bisa
> masuk ke email saya.

Apakah yang diubah server eterindo.com yang pakai IP 202.158.33.133?
Kalau dari log list server masih belum diubah

Fri 2016-05-13 11:50:46.045: 03: [176165] --> MAIL
From:<prvs=19411dfb3f=mdaemon-l-bou...@dutaint.com> SIZE=7214
Fri 2016-05-13 11:50:46.121: 02: [176165] <-- 250 2.1.0 Sender OK
Fri 2016-05-13 11:50:46.121: 03: [176165] --> RCPT To:<and...@eterindo.com>
Fri 2016-05-13 11:50:47.202: 02: [176165] <-- 250 2.1.5 Recipient OK

Fri 2016-05-13 11:50:47.439: 02: [176165] <-- 550 5.7.1 Sorry, message
looks like spam or phish to me (OP)

(log lebih rinci lihat dibawah)


> Serta, sekalian saya tanya beberapa hal ini :
> 
> -        Dimana saya bisa mendapatkankan copy database Bayesian yang
> “clean” dan “bagus”, sehingga saya tinggal replace dengan yang mungkin
> sudah “kotor”.

Tidak bisa pakai data dari server lain, akan rancu nantinya bayes
database token sehingga menghasilkan banyak false positive result.
Lakukan training ulang bayesian dengan data server milik sendiri.
Non-Spam message = semua non-spam mail yang pernah Anda terima dari
internet, sebaliknya untuk spam message .

Forwardkan semua spam/non-spam message tersebut ke
spamle...@mail.eterindo.com untuk training ulang.

Untuk reset bayesian database, hapus isian files di
\\mdaemon\spamassasin\bayes, lalu restart mdaemon service dari windows
service control panel.

> -        Semakin kesini, Email yang asli banyak masuk ke folder junk
> mail sehingga saya berpikir untuk direcheck semua setting kembali, boleh
> saya diinformasikan config optimum agar fighting spam bisa bekerja
> maksimal dan email yang asli tetap bisa selalu sampai tujuan dengan baik.

Spamassassin memang tidak bisa 100% akurat, harus terus menerus di
lakukan adjustment dengan melakukan bayesian learning,
whitelis/blacklist oleh user maupun Administrator.
Yang bisa 100% akurat adalah ReverseLookup check.

Bayesian learning rawan kena spoofing sehingga jangan aktifkan bayesian
auto learning.

Ini setting lengkapnya

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?sf_spam_filtering.htm

[x] Enable Spam Filter

ikuti menu diatas.
Hapus/kosongkan isian "Subject tag"

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?sf_options.htm

Ikuti sesuai menu bawaan instalasi diatas, ubahan yang perlu dilakukan
adalah

Is DNS service available? =  No

[x] Move spam into user's IMAP spam folder automatically

Panel/tab menu lain di spam filter ikuti bawaan instalasi

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?sf_bayesian.htm

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?sf_bayesian_advanced_options.htm

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?sf_antispam_updates.htm

dst

Aktifkan whitelist di account template

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?template-manager_white-list.htm



Fri 2016-05-13 11:50:24.453: 05: [176165] Session 176165; child 0029
Fri 2016-05-13 11:50:24.453: 01: [176165] Parsing message
<f:\mdaemon\queues\remote\pd80000125809.msg>
Fri 2016-05-13 11:50:24.455: 01: [176165] *  From: syaf...@dutaint.co.id
Fri 2016-05-13 11:50:24.455: 01: [176165] *  To: and...@eterindo.com
Fri 2016-05-13 11:50:24.455: 01: [176165] *  Subject: [MDaemon-L] Lolos
ContentFilter
Fri 2016-05-13 11:50:24.455: 01: [176165] *  Size (bytes): 7214
Fri 2016-05-13 11:50:24.455: 01: [176165] *  Message-ID:
<mdaemon-f201605131150.aa5016291md50000000...@dip37.dutaint.com>
Fri 2016-05-13 11:50:24.625: 05: [176165] Resolving MX record for
eterindo.com (DNS Server: 103.253.112.238)...
Fri 2016-05-13 11:50:24.702: 05: [176165] *  P=005 S=000 D=eterindo.com
TTL=(180) MX=[etwamail2.eterindo.com]
Fri 2016-05-13 11:50:24.702: 05: [176165] *  P=010 S=001 D=eterindo.com
TTL=(180) MX=[etwamail.eterindo.com]
Fri 2016-05-13 11:50:24.702: 05: [176165] *  P=020 S=002 D=eterindo.com
TTL=(180) MX=[mx-corp3.cbn.net.id]
Fri 2016-05-13 11:50:24.702: 05: [176165] Attempting SMTP connection to
etwamail2.eterindo.com
Fri 2016-05-13 11:50:24.702: 05: [176165] Resolving A record for
etwamail2.eterindo.com (DNS Server: 103.253.112.238)...
Fri 2016-05-13 11:50:24.746: 05: [176165] *  D=etwamail2.eterindo.com
TTL=(720) A=[203.128.87.110]
Fri 2016-05-13 11:50:24.746: 05: [176165] Attempting SMTP connection to
203.128.87.110:25
Fri 2016-05-13 11:50:24.747: 05: [176165] Waiting for socket connection...
Fri 2016-05-13 11:50:45.924: 04: [176165] *  Socket error 10060 - The
connection timed out.
Fri 2016-05-13 11:50:45.924: 05: [176165] *  203.128.87.110 added to
connection failure cache for 5 minutes
Fri 2016-05-13 11:50:45.924: 05: [176165] Attempting SMTP connection to
etwamail.eterindo.com
Fri 2016-05-13 11:50:45.925: 05: [176165] Resolving A record for
etwamail.eterindo.com (DNS Server: 103.253.112.238)...
Fri 2016-05-13 11:50:45.954: 05: [176165] *  D=etwamail.eterindo.com
TTL=(179) A=[202.158.33.133]
Fri 2016-05-13 11:50:45.954: 05: [176165] Attempting SMTP connection to
202.158.33.133:25
Fri 2016-05-13 11:50:45.954: 05: [176165] Waiting for socket connection...
Fri 2016-05-13 11:50:45.982: 05: [176165] *  Connection established
103.253.112.243:61635 --> 202.158.33.133:25
Fri 2016-05-13 11:50:45.982: 05: [176165] Waiting for protocol to start...
Fri 2016-05-13 11:50:45.984: 02: [176165] <-- 220 eterindo.com ESMTP
MDaemon 16.0.1; Fri, 13 May 2016 12:01:46 +0700
Fri 2016-05-13 11:50:45.985: 03: [176165] --> EHLO dip37.dutaint.com
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250-eterindo.com Hello
dip37.dutaint.com [103.253.112.243], pleased to meet you
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250-ETRN
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250-AUTH LOGIN CRAM-MD5 PLAIN
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250-8BITMIME
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250-ENHANCEDSTATUSCODES
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250-STARTTLS
Fri 2016-05-13 11:50:46.001: 02: [176165] <-- 250 SIZE
Fri 2016-05-13 11:50:46.001: 03: [176165] --> STARTTLS
Fri 2016-05-13 11:50:46.003: 02: [176165] <-- 220 2.7.0 Ready to start TLS
Fri 2016-05-13 11:50:46.007: 05: [176165] SSL negotiation successful
(TLS 1.0, 1536 bit key exchange, 128 bit RC4 encryption)
Fri 2016-05-13 11:50:46.007: 03: [176165] --> EHLO dip37.dutaint.com
Fri 2016-05-13 11:50:46.044: 02: [176165] <-- 250-eterindo.com Hello
dip37.dutaint.com [103.253.112.243], pleased to meet you
Fri 2016-05-13 11:50:46.044: 02: [176165] <-- 250-ETRN
Fri 2016-05-13 11:50:46.044: 02: [176165] <-- 250-AUTH LOGIN CRAM-MD5 PLAIN
Fri 2016-05-13 11:50:46.044: 02: [176165] <-- 250-8BITMIME
Fri 2016-05-13 11:50:46.044: 02: [176165] <-- 250-ENHANCEDSTATUSCODES
Fri 2016-05-13 11:50:46.044: 02: [176165] <-- 250 SIZE
Fri 2016-05-13 11:50:46.045: 03: [176165] --> MAIL
From:<prvs=19411dfb3f=mdaemon-l-bou...@dutaint.com> SIZE=7214
Fri 2016-05-13 11:50:46.121: 02: [176165] <-- 250 2.1.0 Sender OK
Fri 2016-05-13 11:50:46.121: 03: [176165] --> RCPT To:<and...@eterindo.com>
Fri 2016-05-13 11:50:47.202: 02: [176165] <-- 250 2.1.5 Recipient OK
Fri 2016-05-13 11:50:47.202: 03: [176165] --> DATA
Fri 2016-05-13 11:50:47.205: 02: [176165] <-- 354 Enter mail, end with
<CRLF>.<CRLF>
Fri 2016-05-13 11:50:47.205: 05: [176165] Sending
<f:\mdaemon\queues\remote\pd80000125809.msg> to [202.158.33.133]
Fri 2016-05-13 11:50:47.205: 05: [176165] Transfer Complete
Fri 2016-05-13 11:50:47.439: 02: [176165] <-- 550 5.7.1 Sorry, message
looks like spam or phish to me (OP)
Fri 2016-05-13 11:50:47.439: 03: [176165] --> QUIT
Fri 2016-05-13 11:50:47.450: 04: [176165] SMTP session terminated (Bytes
in/out: 605/7535)

-- 
syafril
-------
Syafril Hermansyah
MDaemon-L Moderators, MDaemon 16.0.2-64, SP 5.0-64
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Menularkan pesimisme cuma perlu modal gombal. Tapi membangun harapan
harus dengan kerja keras dan hasil nyata.
        --- Dahlan Iskan


-- 
--MDaemon-L----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server.

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Henti Langgan: Kirim mail ke MDaemon-L-unsubscribe [at] dutaint.com
Berlangganan: kirim mail ke MDaemon-L-subscribe [at] dutaint.com
Versi terakhir MD 16.0.2, SP 5.0, BES 2.0.2, OC 3.5.2, SG 3.0.3



Kirim email ke