On 22/07/2022 16.32, Syafril Hermansyah via Mdaemon-L wrote:

Hmm... apakah ada external firewall atau antivirus for network yang melakuan filter terhadap smtp port 25?
tidak ada firewall / antivirus pak, koneksi mailserver langsung ke internet

Coba begini saja, built ulang DKIM key dan update ke Name Server (authoritative DNS server) domain persada.id. DKIM yang lama masih 1024 bit, kalau MD baru mestinya akan generate DKIM 2048 bit.

Saya sudah built ulang pak, saya tes lagi tapi malah permanent error DKIM nya.

Terlampir disampaikan file hasil test, dan dkim record yang saya tambahkan di NS,

karena dkim key nya tidak bisa saya masukan sekaligus maka saya tambahkan seperti di scrren capture.


Terima kasih.


--
--[mdaemon-l]----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 22.0.1, SecurityGateway 8.5.2

============================================================================
This is SPF/DKIM/DMARC/RBL report generated by a test tool provided 
        by AdminSystem Software Limited.

Any problem, please contact supp...@emailarchitect.net
============================================================================
Report-Id: 440b2f71
Sender: <prvs=120582129e=bambang.setia...@persada.id>
Header-From: <bambang.setia...@persada.id>
HELO-Domain: mail.persada.id
Source-IP: 103.150.114.156
SSL/TLS: unencrypted
Validator-Version: 1.11
============================================================================
Original email header:

x-sender: prvs=120582129e=bambang.setia...@persada.id
x-receiver: test-440b2...@appmaildev.com
Received: from mail.persada.id ([103.150.114.156]) by appmaildev.com with 
Microsoft SMTPSVC(8.5.9600.16384);
         Mon, 25 Jul 2022 02:23:17 +0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=persada.id;
        s=MDaemon; t=1658715797; x=1659320597;
        i=bambang.setia...@persada.id; q=dns/txt; h=From:To:Subject:Date:
        Organization:Message-ID:MIME-Version:Content-Type:Thread-Index:
        Content-Language; bh=fobibbuErxhXgQnekN0KxytZW7FgGSKhz6CGBoPpbVs
        =; b=sQezvbfBv8tdB4gBOXrxFSO/g7ZBzZZaSSc5arslNaVvGY3PLVcUJFMzUTQ
        dG3jKvZKj1Bd4x+5ABQ/xfLjzL033cy/eBrUvRWCKyZQawNMQezfjSLaEd5ma7ST
        mi6G4zRUtBbmuknPE39UZOi5ciURjWu19pNUBRE4GEsDzYuyw06hM6EtuwhBzdLX
        Xnd6bS2U6vicc9cUgLpotd420Rf5PmhvBMkoF6VLpA5hym/cEvsRgLRFonb1FgTP
        nJRei6HHdSYQNJfFix35zdl2S7/QFLT0wn1cLN4ZKrvGliyjXkA04BpqpUvZBE2i
        SLd8yvlIEQ5rA80sYdGBO0KxC3Q==
X-MDAV-Result: clean
X-MDAV-Processed: mail.persada.id, Mon, 25 Jul 2022 09:23:17 +0700
Received: from benkbenk by mail.persada.id (103.150.114.156) (MDaemon PRO 
v22.0.1) 
        with ESMTPA id pp5001004071039.msg; Mon, 25 Jul 2022 09:23:17 +0700
X-Spam-Processed: mail.persada.id, Mon, 25 Jul 2022 09:23:17 +0700
        (not processed: message from trusted or authenticated source)
X-MDArrival-Date: Mon, 25 Jul 2022 09:23:17 +0700
X-Authenticated-Sender: bambang.setia...@persada.id
X-Return-Path: prvs=120582129e=bambang.setia...@persada.id
X-Envelope-From: bambang.setia...@persada.id
X-MDaemon-Deliver-To: test-440b2...@appmaildev.com
From: "Bambang Setiawan" <bambang.setia...@persada.id>
To: <test-440b2...@appmaildev.com>
Subject: 
Date: Mon, 25 Jul 2022 09:21:11 +0700
Organization: PT. Personel Alih Daya (Persero) Tbk
Message-ID: <000001d89fcd$3505bc30$9f113490$@persada.id>
MIME-Version: 1.0
Content-Type: multipart/alternative;
        boundary="----=_NextPart_000_0001_01D8A007.E164BB40"
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdifzTTFTnzl8DVRSkiTBCPt11d2jQ==
Content-Language: id
X-MDCFSigsAdded: persada.id
Return-Path: prvs=120582129e=bambang.setia...@persada.id
X-OriginalArrivalTime: 25 Jul 2022 02:23:17.0906 (UTC) 
FILETIME=[806B5720:01D89FCD]

============================================================================
SPF: Pass
============================================================================

SPF-Record: v=spf1 +a +mx +ip4:103.150.114.156 include:smtp.iforte.net.id ~all
Sender-IP: 103.150.114.156
Sender-Domain-Helo-Domain: persada.id

Query TEXT record from DNS server for: persada.id
[TXT]: v=spf1 +a +mx +ip4:103.150.114.156 include:smtp.iforte.net.id ~all
Parsing SPF record: v=spf1 +a +mx +ip4:103.150.114.156 
include:smtp.iforte.net.id ~all

Mechanisms: v=spf1

Mechanisms: +a
Testing mechanism a
Query A record from DNS server for: persada.id
[A]: 103.150.114.157
Testing CIDR: source=103.150.114.156;  103.150.114.157/128

Mechanisms: +mx
Testing mechanism mx
Query MX record from DNS server for: persada.id
[MX]: mail.persada.id
Testing mechanism A:mail.persada.id/128
Query A record from DNS server for: mail.persada.id
[A]: 103.150.114.156
Testing CIDR: source=103.150.114.156;  103.150.114.156/128
mx hit, Qualifier: +

============================================================================
DKIM: permerror
============================================================================

DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=persada.id;
        s=MDaemon; t=1658715797; x=1659320597;
        i=bambang.setia...@persada.id; q=dns/txt; h=From:To:Subject:Date:
        Organization:Message-ID:MIME-Version:Content-Type:Thread-Index:
        Content-Language; bh=fobibbuErxhXgQnekN0KxytZW7FgGSKhz6CGBoPpbVs
        =; b=sQezvbfBv8tdB4gBOXrxFSO/g7ZBzZZaSSc5arslNaVvGY3PLVcUJFMzUTQ
        dG3jKvZKj1Bd4x+5ABQ/xfLjzL033cy/eBrUvRWCKyZQawNMQezfjSLaEd5ma7ST
        mi6G4zRUtBbmuknPE39UZOi5ciURjWu19pNUBRE4GEsDzYuyw06hM6EtuwhBzdLX
        Xnd6bS2U6vicc9cUgLpotd420Rf5PmhvBMkoF6VLpA5hym/cEvsRgLRFonb1FgTP
        nJRei6HHdSYQNJfFix35zdl2S7/QFLT0wn1cLN4ZKrvGliyjXkA04BpqpUvZBE2i
        SLd8yvlIEQ5rA80sYdGBO0KxC3Q==
Signed-by: bambang.setia...@persada.id
Expected-Body-Hash: fobibbuErxhXgQnekN0KxytZW7FgGSKhz6CGBoPpbVs=
Public-Key: v=DKIM1; 
p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtC6csXcbCP0TjPCh/RwoqurM4uoLoc1sUpiL+7zivhh//PsWzvurjr1nXeO+4OCPB6HbhRm2X3vjYdeMXY73BRSEIN1Ela3Fv+deKyEAQdWc9JSPVoGTw9xYd3ZcNSK4xNHjX2Yq/1QvpwpdMoxBZAceN1aOFTKSPAS21C0OC/MxJpaTSyhLVPSjLi+YSU7jRKmollkOAX4Qnd1E9vEgAjZAnILvw2mAELJxXw62A8K5WxDU4E7Unf+slZaOzFkj9iz4+E5azx2cWIxBzct7/m05+tC2093X5i8adSroYuNgxqvf53agE7yvmZbD8k7EKHVOGpZRS7/o9bceGJWtQIDAQAB;

DKIM-Result: permerror (bad key)

============================================================================
DMARC: pass
============================================================================

_dmarc.persada.id: v=DMARC1; p=none
Received-SPF: pass (appmaildev.com: domain of 
prvs=120582129e=bambang.setia...@persada.id designates 103.150.114.156 as 
permitted sender) client-ip=103.150.114.156
Authentication-Results: appmaildev.com;
    dkim=permerror header.d=persada.id;
    spf=pass (appmaildev.com: domain of 
prvs=120582129e=bambang.setia...@persada.id designates 103.150.114.156 as 
permitted sender) client-ip=103.150.114.156;
    dmarc=pass (adkim=r aspf=r p=none) header.from=persada.id;

============================================================================
DomainKey: none
============================================================================

DomainKey-Result: none (no signature)
If DKIM result is passed, you can ignore DomainKey result: none
Notice: DomainKey is obsoleted standard, the new standard is DKIM.

============================================================================
PTR: ExistsRecord
============================================================================

Sender-IP: 103.150.114.156
Query 156.114.150.103.in-addr.arpa
Host: mail.persada.id

============================================================================
RBL: NotListed
============================================================================

bl.spamcop.net:Not Listed (OK) - http://bl.spamcop.net 
cbl.abuseat.org:Not Listed (OK) - http://cbl.abuseat.org 
b.barracudacentral.org:Not Listed (OK) - 
http://www.barracudacentral.org/rbl/removal-request 
dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
http.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
dul.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
misc.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
smtp.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
socks.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
spam.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
web.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
zombie.dnsbl.sorbs.net:Not Listed (OK) - http://www.sorbs.net 
pbl.spamhaus.org:Not Listed (OK) - http://www.spamhaus.org/pbl/ 
sbl.spamhaus.org:Not Listed (OK) - http://www.spamhaus.org/sbl/ 
xbl.spamhaus.org:Not Listed (OK) - http://www.spamhaus.org/xbl/ 
zen.spamhaus.org:Not Listed (OK) - http://www.spamhaus.org/zen/ 
ubl.unsubscore.com:Not Listed (OK) - http://www.lashback.com/blacklist/ 
rbl.spamlab.com:Not Listed (OK) - http://tools.appriver.com/index.aspx?tool=rbl 
dyna.spamrats.com:Not Listed (OK) - http://www.spamrats.com 
noptr.spamrats.com:Not Listed (OK) - http://www.spamrats.com 
spam.spamrats.com:Not Listed (OK) - http://www.spamrats.com 
cbl.anti-spam.org.cn:Not Listed (OK) - 
http://www.anti-spam.org.cn/?Locale=en_US 
cdl.anti-spam.org.cn:Not Listed (OK) - 
http://www.anti-spam.org.cn/?Locale=en_US 
dnsbl.inps.de:Not Listed (OK) - http://dnsbl.inps.de/index.cgi?lang=en 
drone.abuse.ch:Not Listed (OK) - http://dnsbl.abuse.ch 
httpbl.abuse.ch:Not Listed (OK) - http://dnsbl.abuse.ch 
korea.services.net:Not Listed (OK) - http://korea.services.net 
short.rbl.jp:Not Listed (OK) - http://www.rbl.jp 
virus.rbl.jp:Not Listed (OK) - http://www.rbl.jp 
spamrbl.imp.ch:Not Listed (OK) - http://antispam.imp.ch 
wormrbl.imp.ch:Not Listed (OK) - http://antispam.imp.ch 
virbl.bit.nl:Not Listed (OK) - http://virbl.bit.nl  
rbl.suresupport.com:Not Listed (OK) - http://suresupport.com/postmaster 
dsn.rfc-ignorant.org:Not Listed (OK) - 
http://www.rfc-ignorant.org/policy-dsn.php 
spamguard.leadmon.net:Not Listed (OK) - http://www.leadmon.net/SpamGuard/ 
dnsbl.tornevall.org:Not Listed (OK) - http://opm.tornevall.org 
netblock.pedantic.org:Not Listed (OK) - http://pedantic.org 
multi.surbl.org:Not Listed (OK) - http://www.surbl.org 
ix.dnsbl.manitu.net:Not Listed (OK) - http://www.dnsbl.manitu.net 
tor.dan.me.uk:Not Listed (OK) - http://www.dan.me.uk/dnsbl 
rbl.efnetrbl.org:Not Listed (OK) - http://rbl.efnetrbl.org 
dnsbl.dronebl.org:Not Listed (OK) - http://www.dronebl.org 
access.redhawk.org:Not Listed (OK) - 
http://www.redhawk.org/index.php?option=com_wrapper&Itemid=33 
db.wpbl.info:Not Listed (OK) - http://www.wpbl.info 
rbl.interserver.net:Not Listed (OK) - http://rbl.interserver.net 
query.senderbase.org:Not Listed (OK) - http://www.senderbase.org/about 
bogons.cymru.com:Not Listed (OK) - http://www.team-cymru.org/Services/Bogons/ 
csi.cloudmark.com:Not Listed (OK) - 
http://www.cloudmark.com/en/products/cloudmark-sender-intelligence/index 


============================================================================
Original message source
============================================================================
x-sender: prvs=120582129e=bambang.setia...@persada.id
x-receiver: test-440b2...@appmaildev.com
Received: from mail.persada.id ([103.150.114.156]) by appmaildev.com with 
Microsoft SMTPSVC(8.5.9600.16384);
         Mon, 25 Jul 2022 02:23:17 +0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=persada.id;
        s=MDaemon; t=1658715797; x=1659320597;
        i=bambang.setia...@persada.id; q=dns/txt; h=From:To:Subject:Date:
        Organization:Message-ID:MIME-Version:Content-Type:Thread-Index:
        Content-Language; bh=fobibbuErxhXgQnekN0KxytZW7FgGSKhz6CGBoPpbVs
        =; b=sQezvbfBv8tdB4gBOXrxFSO/g7ZBzZZaSSc5arslNaVvGY3PLVcUJFMzUTQ
        dG3jKvZKj1Bd4x+5ABQ/xfLjzL033cy/eBrUvRWCKyZQawNMQezfjSLaEd5ma7ST
        mi6G4zRUtBbmuknPE39UZOi5ciURjWu19pNUBRE4GEsDzYuyw06hM6EtuwhBzdLX
        Xnd6bS2U6vicc9cUgLpotd420Rf5PmhvBMkoF6VLpA5hym/cEvsRgLRFonb1FgTP
        nJRei6HHdSYQNJfFix35zdl2S7/QFLT0wn1cLN4ZKrvGliyjXkA04BpqpUvZBE2i
        SLd8yvlIEQ5rA80sYdGBO0KxC3Q==
X-MDAV-Result: clean
X-MDAV-Processed: mail.persada.id, Mon, 25 Jul 2022 09:23:17 +0700
Received: from benkbenk by mail.persada.id (103.150.114.156) (MDaemon PRO 
v22.0.1) 
        with ESMTPA id pp5001004071039.msg; Mon, 25 Jul 2022 09:23:17 +0700
X-Spam-Processed: mail.persada.id, Mon, 25 Jul 2022 09:23:17 +0700
        (not processed: message from trusted or authenticated source)
X-MDArrival-Date: Mon, 25 Jul 2022 09:23:17 +0700
X-Authenticated-Sender: bambang.setia...@persada.id
X-Return-Path: prvs=120582129e=bambang.setia...@persada.id
X-Envelope-From: bambang.setia...@persada.id
X-MDaemon-Deliver-To: test-440b2...@appmaildev.com
From: "Bambang Setiawan" <bambang.setia...@persada.id>
To: <test-440b2...@appmaildev.com>
Subject: 
Date: Mon, 25 Jul 2022 09:21:11 +0700
Organization: PT. Personel Alih Daya (Persero) Tbk
Message-ID: <000001d89fcd$3505bc30$9f113490$@persada.id>
MIME-Version: 1.0
Content-Type: multipart/alternative;
        boundary="----=_NextPart_000_0001_01D8A007.E164BB40"
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdifzTTFTnzl8DVRSkiTBCPt11d2jQ==
Content-Language: id
X-MDCFSigsAdded: persada.id
Return-Path: prvs=120582129e=bambang.setia...@persada.id
X-OriginalArrivalTime: 25 Jul 2022 02:23:17.0906 (UTC) 
FILETIME=[806B5720:01D89FCD]

This is a multipart message in MIME format.

------=_NextPart_000_0001_01D8A007.E164BB40
Content-Type: text/plain;
        charset="us-ascii"
Content-Transfer-Encoding: 7bit

 



-- 


 


CONFIDENTIALITY NOTICE

"This e-mail message including any attachment(s) is from PT. Personel Alih Daya 
(Persada). It may contain confidential and/or privileged information. Unless 
you are the intended recipient (or authorized to receive for the intended 
recipient) you may not read, print, retain, use, copy, distribute or disclose 
to anyone the message or any information contained in the message herein. If 
you have received this communication in error, please advise the sender by 
reply e-mail and destroy all copies (including any attachments) of the original 
message. PT. Personel Alih Daya (Persada) is neither liable for the proper and 
complete transmission of the information contained in this communication nor 
for any delay in its receipt."
------=_NextPart_000_0001_01D8A007.E164BB40
Content-Type: text/html;
        charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<html xmlns:v=3D"urn:schemas-microsoft-com:vml" xmlns:o=3D"urn:schemas-micr=
osoft-com:office:office" xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml"; xmlns=3D"http:=
//www.w3.org/TR/REC-html40"><head><META HTTP-EQUIV=3D"Content-Type" CONTENT=
=3D"text/html; charset=3Dus-ascii"><meta name=3DGenerator content=3D"Micros=
oft Word 15 (filtered medium)"><style><!--
/* Font Definitions */
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0cm;
        font-size:11.0pt;
        font-family:"Calibri",sans-serif;
        mso-fareast-language:EN-US;}
span.EmailStyle17
        {mso-style-type:personal-compose;
        font-family:"Calibri",sans-serif;
        color:windowtext;}
.MsoChpDefault
        {mso-style-type:export-only;
        font-family:"Calibri",sans-serif;
        mso-fareast-language:EN-US;}
@page WordSection1
        {size:612.0pt 792.0pt;
        margin:72.0pt 72.0pt 72.0pt 72.0pt;}
div.WordSection1
        {page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]--></head><body lang=3DIN link=3D"#0563C1" v=
link=3D"#954F72" style=3D'word-wrap:break-word'><div class=3DWordSection1><=
p class=3DMsoNormal><span lang=3DEN-US><o:p>&nbsp;</o:p></span></p></div><b=
r><div>--&nbsp;</div>
<div>&nbsp;</div>
<div style=3D"text-align:justify"><b>CONFIDENTIALITY NOTICE</b><br />
"This e-mail message including any attachment(s) is from PT. Personel Alih =
Daya (Persada). It may contain confidential and/or privileged information. =
Unless you are the intended recipient (or authorized to receive for the int=
ended recipient) you may not read, print, retain, use, copy, distribute or =
disclose to anyone the message or any information contained in the message =
herein. If you have received this communication in error, please advise the=
 sender by reply e-mail and destroy all copies (including any attachments) =
of the original message. PT. Personel Alih Daya (Persada) is neither liable=
 for the&nbsp;proper and complete transmission of the information contained=
 in this communication nor for any delay in its receipt."</div></body></htm=
l>
------=_NextPart_000_0001_01D8A007.E164BB40--

============================================================================

Kirim email ke