[mdaemon-l] Host screening refused

2019-12-05 Terurut Topik Rievo Niemrod E
Selamat Siang Pak Syafril 

 

Pak Mohon bantuannya untuk update di Hostscreen.dat, Berikut log SMTP - (IN)
:


Thu 2019-12-05 14:34:02.036: --

Thu 2019-12-05 14:34:06.359: [169939] Session 169939; child 0004

Thu 2019-12-05 14:34:06.359: [169939] Accepting SMTP connection from
67.222.38.55:53596 to 172.16.0.6:25

Thu 2019-12-05 14:34:06.359: [169939] --> 220 bb.ptbmi.com ESMTP MDaemon
19.5.1; Thu, 05 Dec 2019 14:34:06 +0700

Thu 2019-12-05 14:34:06.575: [169939] <-- EHLO
gproxy5-pub.mail.unifiedlayer.com

Thu 2019-12-05 14:34:06.575: [169939] --> 250-bb.ptbmi.com Hello
gproxy5-pub.mail.unifiedlayer.com [67.222.38.55], pleased to meet you

Thu 2019-12-05 14:34:06.575: [169939] --> 250-ETRN

Thu 2019-12-05 14:34:06.575: [169939] Location Screening hiding AUTH from
country United States

Thu 2019-12-05 14:34:06.575: [169939] --> 250-8BITMIME

Thu 2019-12-05 14:34:06.575: [169939] --> 250-ENHANCEDSTATUSCODES

Thu 2019-12-05 14:34:06.575: [169939] --> 250-STARTTLS

Thu 2019-12-05 14:34:06.575: [169939] --> 250 SIZE 36700160

Thu 2019-12-05 14:34:06.793: [169939] <-- STARTTLS

Thu 2019-12-05 14:34:06.793: [169939] --> 220 2.7.0 Ready to start TLS

Thu 2019-12-05 14:34:07.281: [169939] SSL negotiation successful (TLS 1.2,
521 bit key exchange, 256 bit AES encryption)

Thu 2019-12-05 14:34:07.501: [169939] <-- EHLO
gproxy5-pub.mail.unifiedlayer.com

Thu 2019-12-05 14:34:07.501: [169939] --> 250-bb.ptbmi.com Hello
gproxy5-pub.mail.unifiedlayer.com [67.222.38.55], pleased to meet you

Thu 2019-12-05 14:34:07.501: [169939] --> 250-ETRN

Thu 2019-12-05 14:34:07.501: [169939] Location Screening hiding AUTH from
country United States

Thu 2019-12-05 14:34:07.501: [169939] --> 250-8BITMIME

Thu 2019-12-05 14:34:07.501: [169939] --> 250-ENHANCEDSTATUSCODES

Thu 2019-12-05 14:34:07.501: [169939] --> 250 SIZE 36700160

Thu 2019-12-05 14:34:07.717: [169939] <-- MAIL
FROM: SIZE=111531

Thu 2019-12-05 14:34:07.720: [169939] --> 550 5.7.1 Sender unknown

Thu 2019-12-05 14:34:07.720: [169939] Host screening refused connection to
172.16.0.6:25 from gproxy5-pub.mail.unifiedlayer.com [67.222.38.55:53596]
(matched to line "all gproxy5-pub.mail.unifiedlayer.com refuse")

Thu 2019-12-05 14:34:07.721: [169939] SMTP session terminated (Bytes in/out:
827/3859)

Thu 2019-12-05 14:34:07.721: --

Terima Kasih 

 

Salam

Rievo


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.5.1, SG 6.5.0


[mdaemon-l] Email Delay

2019-12-05 Terurut Topik Syafril Hermansyah
On 05/12/19 16.33, Syafril Hermansyah (syaf...@dutaint.co.id) wrote:
>> Firewall menggunakan built in windows server 2012 dan sudah di allow semua
>> port yang digunakan mdaemon termasuk port 53,
>> Koneksi ke/dari internet langsung dari server.  


Tidak cukup dengan allow incoming tcp/udp port, perlu memasukkan aplikasi
MDaemon kedalam daftar "allow apps or features through
windows firewall".

lihat contohnya disini

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg43056.html

pilihan lain, allow all outgoing tcp/udp port (65K) dari MDaemon ke internet,
diperluas dari standardnya yang 20K

https://en.wikipedia.org/wiki/Ephemeral_port

https://blogs.technet.microsoft.com/askds/2007/08/24/dynamic-ports-in-windows-server-2008-and-windows-vista-or-how-i-learned-to-stop-worrying-and-love-the-iana/

Open Ephemeral port (dynamic allocation port) untuk memastikan MDaemon multi
tasking berjalan normal, dan khusus DNS resolver pakainya protokol UDP walau
saat ini sudah mulai beralih (transisi) ke protocol tcp.

https://www.mail-archive.com/mdaemon-l@dutaint.com/msg44983.html





-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.5.2-64 bit Beta C
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Instruction does much, but encouragement everything.
--- Johann Wolfgang von Goethe


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.5.1, SG 6.5.0




[mdaemon-l] Email Delay

2019-12-05 Terurut Topik Syafril Hermansyah
On 05/12/19 16.11, Bambang Setiawan (bambang.setia...@persada.id) wrote:
> Mohon bantuannya ya pak,  terkadang penerimaan email kami masih terjadi
> delay,
> Firewall menggunakan built in windows server 2012 dan sudah di allow semua
> port yang digunakan mdaemon termasuk port 53,
> Koneksi ke/dari internet langsung dari server.  


> Thu 2019-12-05 11:26:10.568: [352529] *  DNS: 60 second wait for DNS
> response exceeded (DNS Server: 202.155.0.15)
> Thu 2019-12-05 11:26:10.612: [352529] *  D=147.178.238.77.IN-ADDR.ARPA
> TTL=(30) PTR=[sonic308-19.consmr.mail.ir2.yahoo.com]
> Thu 2019-12-05 11:27:10.612: [352529] *  DNS: 60 second wait for DNS
> response exceeded (DNS Server: 202.155.0.15)

> Thu 2019-12-05 11:29:12.678: [352529] *  DNS: 60 second wait for DNS
> response exceeded (DNS Server: 209.244.0.3)


Ada berapa isian DNS resolver?
Bisa dihapus saja DNS resolver yang tidak berfungsi (202.155.0.15, 209.244.0.3)


http://mdaemon.dutaint.co.id/mdaemon/19.5/index.html?default-domain-and-servers_dns.htm

sebaiknya lakukan DNSbenchmark test


https://www.mail-archive.com/mdaemon-l@dutaint.com/msg22546.html

-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.5.2-64 bit Beta C
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Tell me and I forget. Teach me and I remember. Involve me and I learn.
--- Benjamin Franklin


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.5.1, SG 6.5.0




[mdaemon-l] noreply@ mdaemon

2019-12-05 Terurut Topik Syafril Hermansyah
On 05/12/19 10.36, Arif Santoso (arif.sant...@eaglehighplantations.com) wrote:
> Mohon di bantu, email saya banyak di serang spam ke noreply@.
> 
> Saya cari alamat email tersebut tidak ada. Apakah itu default mdaemon dan
> bagaimana cara menangkal nya ya…?



Perlihatkan message header dari spam mail tersebut kesini.


-- 
syafril
---
Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 19.5.2-64 bit Beta C
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Most people spend their entire lives in a fantasy Island called ‘Someday I’ll.’
--- Denis Waitley


-- 
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir MD 19.5.1, SG 6.5.0




[mdaemon-l] Email Delay

2019-12-05 Terurut Topik Bambang Setiawan
Dear Pak Syafril,

Mohon bantuannya ya pak,  terkadang penerimaan email kami masih terjadi
delay,
Firewall menggunakan built in windows server 2012 dan sudah di allow semua
port yang digunakan mdaemon termasuk port 53,
Koneksi ke/dari internet langsung dari server.  

Saya juga sudah aktifkan option berikut :

http://mdaemon.dutaint.co.id/mdaemon/19.5/index.html?default-domain-and-serv
ers_dns.htm
[x] Use EDNS0 (Extension Mechanisms for DNS)

Terlampi kami sampaikan email header dan SMTP Log untuk tes dari yahoo dan
gmail.
Delay yang signifikan waktunya adalah yang dari gmail.

Atas bantuannya diucapkan terima kasih.


EMAIL HEADER dari Google

X-MDAV-Processed: mail.persada.id, Thu, 05 Dec 2019 15:52:07 +0700
Return-path: 
Authentication-Results: mail.persada.id;
spf=pass smtp.mailfrom=_spf.google.com;
dkim=pass (good signature) header.d=gmail.com header.b=V+w4dR3GRg;
dmarc=pass header.from=gmail.com (p=none sampling=60 pct=100);
iprev=pass policy.iprev=209.85.215.181 (PTR
mail-pg1-f181.google.com);
iprev=pass policy.iprev=209.85.215.181 (HELO
mail-pg1-f181.google.com);
iprev=fail policy.iprev=209.85.215.181 reason="does not match" (MAIL
b3nkb...@gmail.com)
Received-SPF: pass (mail.persada.id: domain gmail.com
designates 209.85.215.181 as permitted sender)
receiver=mail.persada.id; client-ip=209.85.215.181;
mechanism=ip4:209.85.128.0/17; envelope-from="b3nkb...@gmail.com";
helo=mail-pg1-f181.google.com;
Received: from mail-pg1-f181.google.com (mail-pg1-f181.google.com
[209.85.215.181]) 
by mail.persada.id (124.81.84.135) (MDaemon PRO v19.5.1) with ESMTPS
id md50004893205.msg; 
Thu, 05 Dec 2019 15:52:06 +0700
X-Spam-Processed: mail.persada.id, Thu, 05 Dec 2019 15:52:06 +0700
(not processed: sender in recipient's private address book)
X-MDDKIM-Result: unapproved (mail.persada.id)
X-MDSPF-Result: unapproved (mail.persada.id)
X-MDRemoteIP: 209.85.215.181
X-MDHelo: mail-pg1-f181.google.com
X-MDArrival-Date: Thu, 05 Dec 2019 15:52:06 +0700
X-Rcpt-To: bambang.setia...@persada.id
X-MDRcpt-To: bambang.setia...@persada.id
X-Return-Path: b3nkb...@gmail.com
X-Envelope-From: b3nkb...@gmail.com
X-MDaemon-Deliver-To: bambang.setia...@persada.id
Received: by mail-pg1-f181.google.com with SMTP id a33so1080653pgm.5
for ; Thu, 05 Dec 2019 00:48:04 -0800
(PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=gmail.com; s=20161025;
h=to:from:subject:message-id:date:user-agent:mime-version
 :content-transfer-encoding:content-language;
bh=r3foyCLa0bNjhIATGQY1+CJIvB+iSH/tj9+MOenbfuY=;
b=V+w4dR3GRghcg+EQ1nxex0LdLFT+5GRVOQJ4fF4JhtMND2oWLt+6mwDFuLCqdkKkYD
 
hfnrCQFpMD84IyksSL8s3OspPUKQW28fdXZE21NPdaFVUd5euuY5Hyoti8TwgBYNrNix
 
OLK7uusx0uM6TKPAJqfVHJeb1XI0l/MTOCsXcdo7sX44AurCd1SSaqWGOKvo7cqFjUgW
 
18weqSRkISSjjVqULPsQQewXZ+Flxpql4l9RiJaVyaBFMBUFbgpZfH0dvLL7/uGM1iH4
 
CiS5saMR9lKQ62tW6pphC9I1YFyb9NKsCq4ZzKr+1lrkWk3ipT+nO7HP0p7G9xan3VX3
 JAsA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20161025;
h=x-gm-message-state:to:from:subject:message-id:date:user-agent
 :mime-version:content-transfer-encoding:content-language;
bh=r3foyCLa0bNjhIATGQY1+CJIvB+iSH/tj9+MOenbfuY=;
b=YgBcXObGQ7h2cI7rkzLA2aZMriAOa1kwqjjvvgO2KWxazoQTWGnycN+Aezin4nCB/f
 
PUiAmfM5gd/FBtKAgNOQK6HABLLUUMdTDZsDUMnJ94RA3JrLBvhN4B1hbZrubGTWqX07
 
ygSTpTEQVuXs8tNPaEHQLll5nfX8hY/mZR0TFWhuCq1G/Q1L4RF7TBcZ/tlpFHjUk0lv
 
1Sf9wg+DkH8l6BXwKWE3XvOUJCfY+H8lL0QUjFeV9MexbeIEpEdq2yyQiGzW9ALfrBTA
 
B0fh4JU+yMZ/MiP5jylY+uD5CwA8SGWvFD5BY0OJFTZMq6OBlepdDzbLjnQeDnusKhEA
 iyhw==
X-Gm-Message-State: APjAAAWUCDdXif2li2m7/ahf2xi212gxilza3Go4XRl07dcNRUdAk/Hn
rXtRm31yyVF3JdZED4h53dJEWDIM9XBPwQ==
X-Google-Smtp-Source:
APXvYqwCNwMAkEbQCo70j/OGb2J15Y64iJmNolUEb2T8ZsU7ikg2hfvQUIsZInSUGQveeAOO3rbT
vw==
X-Received: by 2002:a65:654d:: with SMTP id
a13mr7271962pgw.141.1575517121508;
Wed, 04 Dec 2019 19:38:41 -0800 (PST)
Received: from [172.16.10.111] ([103.122.7.10])
by smtp.gmail.com with ESMTPSA id
37sm7630487pgl.83.2019.12.04.19.38.39
for 
(version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);
Wed, 04 Dec 2019 19:38:40 -0800 (PST)
To: Bambang Setiawan 
From: Bambang Setiawan 
Subject: tes
Message-ID: <327feec9-afbd-fdd5-cd0f-7ed6f58ad...@gmail.com>
Date: Thu, 5 Dec 2019 10:38:39 +0700
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:60.0) Gecko/20100101
 Thunderbird/60.9.1
MIME-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 7bit
Content-Language: en-US

SMTP LOG dari Google

Thu 2019-12-05 15:47:57.312: 02: [361435] <-- MAIL FROM:
SIZE=2678
Thu 2019-12-05 15:47:57.315: 05: [361435] Performing PTR lookup
(181.215.85.209.IN-ADDR.ARPA)
Thu 2019-12-05 15:47:57.699: 05: [361435] *  D=181.215.85.209.IN-ADDR.ARPA
TTL=(999) PTR=[mail-pg1-f181.google.com]
Thu