>
>
> Whitelist atau trusted IP?
>
>
White List pada menu Security Settings... | Sender Authentication | SMTP
Authentication


>
> > Untuk SMTP Auth. dengan port 587 sudah saya gunakan sejak dulu, sebelum
> > update versi tidak ada masalah apa2 dan sekarang scanner jadi tidak bisa
> > digunakan untuk kirim email.
>
> Apakah koneksi dari scanner pakai SSL?
> Scanner kirim mailnya ke local user atau ke internet?
>
> Bisa diperlihatkan transaksi pengiriman mail dari scanner di smtp-in log?
>

Semua koneksi email saat ini tidak memakai SSL hanya memakai SMTP Auth
Scanner tidak bisa send baik ke local maupun ke internet.

Dibawah ini contoh log dari SMTP(In) :

Mon 2016-10-24 07:26:00.223: 05: [673507] Session 673507; child 0008
Mon 2016-10-24 07:26:00.223: 05: [673507] Accepting SMTP connection from
10.18.12.99:59352 to 192.168.19.2:587
Mon 2016-10-24 07:26:00.224: 03: [673507] --> 220 mail.indokemika.co.id
ESMTP MSA MDaemon 16.5.1; Mon, 24 Oct 2016 07:26:00 +0700
Mon 2016-10-24 07:26:00.225: 02: [673507] <-- EHLO
Scanner_HO-Sales_Marketing
Mon 2016-10-24 07:26:00.226: 03: [673507] --> 250-mail.indokemika.co.id
Hello Scanner_HO-Sales_Marketing [10.18.12.99], pleased to meet you
Mon 2016-10-24 07:26:00.226: 03: [673507] --> 250-AUTH LOGIN CRAM-MD5 PLAIN
Mon 2016-10-24 07:26:00.226: 03: [673507] --> 250-8BITMIME
Mon 2016-10-24 07:26:00.226: 03: [673507] --> 250-ENHANCEDSTATUSCODES
Mon 2016-10-24 07:26:00.226: 03: [673507] --> 250 SIZE 20480000
Mon 2016-10-24 07:26:00.228: 02: [673507] <-- AUTH CRAM-MD5
Mon 2016-10-24 07:26:00.228: 03: [673507] --> 334
PE1EQUVNT04tRjIwMTYxMDI0MDcyNi5BQTI2MDAyMjhNRDQ3NTFAbWFpbC5pbmRva2VtaWthLmNvLmlkPg==
Mon 2016-10-24 07:26:00.230: 02: [673507] <--
YXV0b0BpbmRva2VtaWthLmNvLmlkIDBlNDMzNzMyMzMzZDAxMWE1YWYzMzliNjRlYzk4NmIz
Mon 2016-10-24 07:26:00.231: 03: [673507] --> 235 2.7.0 Authentication
successful
Mon 2016-10-24 07:26:00.231: 01: [673507] Authenticated as
[email protected]
Mon 2016-10-24 07:26:00.234: 02: [673507] <-- MAIL FROM:<
[email protected]>
Mon 2016-10-24 07:26:00.235: 03: [673507] --> 250 2.1.0 Sender OK
Mon 2016-10-24 07:26:00.236: 02: [673507] <-- RCPT TO:<
[email protected]>
Mon 2016-10-24 07:26:00.238: 03: [673507] --> 250 2.1.5 Recipient OK
Mon 2016-10-24 07:26:00.240: 02: [673507] <-- DATA
Mon 2016-10-24 07:26:00.241: 01: [673507] Creating temp file (SMTP):
d:\mdaemon\queues\temp\md50000002922.tmp
Mon 2016-10-24 07:26:00.241: 03: [673507] --> 354 Enter mail, end with
<CRLF>.<CRLF>
Mon 2016-10-24 07:26:00.441: 01: [673507] Message size: 718 bytes
Mon 2016-10-24 07:26:00.441: 03: [673507] --> 530 5.7.0 Authentication
required
Mon 2016-10-24 07:26:01.025: 02: [673507] <-- QUIT
Mon 2016-10-24 07:26:01.025: 03: [673507] --> 221 2.0.0 See ya in cyberspace
Mon 2016-10-24 07:26:01.025: 04: [673507] SMTP session terminated (Bytes
in/out: 931/548)


Saya baru cek, untuk CCTV alert juga gagal kirim notifikasi.  Dibawah ini
log SMTP(In) :

Mon 2016-10-24 01:46:04.962: 05: [670956] Session 670956; child 0002
Mon 2016-10-24 01:46:04.962: 05: [670956] Accepting SMTP connection from
180.246.110.196:38148 to 192.168.19.2:587
Mon 2016-10-24 01:46:04.963: 03: [670956] --> 220 mail.indokemika.co.id
ESMTP MSA MDaemon 16.5.1; Mon, 24 Oct 2016 01:46:04 +0700
Mon 2016-10-24 01:46:04.985: 02: [670956] <-- EHLO localhost
Mon 2016-10-24 01:46:04.985: 03: [670956] --> 250-mail.indokemika.co.id
Hello localhost [180.246.110.196], pleased to meet you
Mon 2016-10-24 01:46:04.985: 03: [670956] --> 250-AUTH LOGIN CRAM-MD5 PLAIN
Mon 2016-10-24 01:46:04.985: 03: [670956] --> 250-8BITMIME
Mon 2016-10-24 01:46:04.985: 03: [670956] --> 250-ENHANCEDSTATUSCODES
Mon 2016-10-24 01:46:04.985: 03: [670956] --> 250 SIZE 20480000
Mon 2016-10-24 01:46:05.007: 02: [670956] <-- AUTH LOGIN
Mon 2016-10-24 01:46:05.007: 03: [670956] --> 334 VXNlcm5hbWU6
Mon 2016-10-24 01:46:05.028: 02: [670956] <-- YXV0b0BpbmRva2VtaWthLmNvLmlk
Mon 2016-10-24 01:46:05.028: 03: [670956] --> 334 UGFzc3dvcmQ6
Mon 2016-10-24 01:46:05.050: 02: [670956] <-- ******
Mon 2016-10-24 01:46:05.051: 03: [670956] --> 235 2.7.0 Authentication
successful
Mon 2016-10-24 01:46:05.051: 01: [670956] Authenticated as
[email protected]
Mon 2016-10-24 01:46:05.072: 02: [670956] <-- MAIL FROM:<
[email protected]>
Mon 2016-10-24 01:46:05.072: 03: [670956] --> 250 2.1.0 Sender OK
Mon 2016-10-24 01:46:05.093: 02: [670956] <-- RCPT TO:<
[email protected]>
Mon 2016-10-24 01:46:05.095: 03: [670956] --> 250 2.1.5 Recipient OK
Mon 2016-10-24 01:46:05.117: 02: [670956] <-- RCPT TO:<[email protected]
>
Mon 2016-10-24 01:46:05.118: 03: [670956] --> 250 2.1.5 Recipient OK
Mon 2016-10-24 01:46:05.141: 02: [670956] <-- RCPT TO:<
[email protected]>
Mon 2016-10-24 01:46:05.142: 03: [670956] --> 250 2.1.5 Recipient OK
Mon 2016-10-24 01:46:05.162: 02: [670956] <-- DATA
Mon 2016-10-24 01:46:05.163: 01: [670956] Creating temp file (SMTP):
d:\mdaemon\queues\temp\md50000002414.tmp
Mon 2016-10-24 01:46:05.163: 03: [670956] --> 354 Enter mail, end with
<CRLF>.<CRLF>
Mon 2016-10-24 01:46:05.409: 01: [670956] Message size: 690 bytes
Mon 2016-10-24 01:46:05.409: 03: [670956] --> 530 5.7.0 Authentication
required
Mon 2016-10-24 01:46:05.430: 05: [670956] Connection closed
Mon 2016-10-24 01:46:05.430: 04: [670956] SMTP session terminated (Bytes
in/out: 913/497)


Apakah hal ini ada pengaruh dari versi terbaru MDaemon?

[17076] Ctrl+S|Sender Authentication|SMTP Authentication has a new checkbox
which requires all incoming messages arriving from local IPs to use
authentication and be rejected if lacking. Trusted IPs are exempt. This
setting is enabled by default for first time new installs. However, it is
disabled by default for upgraders to avoid delivery issues from clients or
other services that don't authenticate and aren't currently listed as a
trusted IP. Please enable this option if you can as it is a good security
practice.

[16698] Ctrl+S|Sender Authentication|SMTP Authentication has a new setting
which requires the credentials used for AUTH to match those of the address
in the FROM header.  This prevents cases in which one person authenticates
as user X while claiming to be user Y within the message.  This is similar
to the existing setting we've always had which compares against the
return-path value. The wording of that option was also slightly changed.
This switch is enabled by default and handles aliases as if they were the
real account email.

[17465] Ctrl+S|Sender Authentication|SMTP Authentication screen has two
options related to forcing authentication credentials to match something
else about the message (either the return-path or the From: header
address). Both of these options can potentially cause issues for gateway
mail storage/forwarding. Therefore a third option has been added to
Ctrl+G|Gateway Manager|Global Gateway Settings which exempts gateway mail
from them both. This option is enabled by default.
Terima kasih,
Rusdi

-- 
--MDaemon-L----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server.

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Henti Langgan: Kirim mail ke MDaemon-L-unsubscribe [at] dutaint.com
Berlangganan: kirim mail ke MDaemon-L-subscribe [at] dutaint.com
Versi terakhir MD 16.5.1, SP 5.0.1, OC 4.0, SG 4.0.1

Kirim email ke