[Mdaemon-L] no SPF record in DNS

2023-08-10 Terurut Topik Syafril Hermansyah via Mdaemon-L

On 8/10/23 17:01, IT Rimau Group wrote:
Mohon dibantu untuk mengecek log dibawah ini kendalanya kenapa ya pak?  
padahal dari sender yang sama email satu laginya masuk.




Thu 2023-08-10 11:28:53.868: 05: [02521282] Performing IP lookup (xiangyu.cn)
Thu 2023-08-10 11:28:53.871: 05: [02521282] *  D=xiangyu.cn TTL=(10) 
A=[10.16.120.103]
Thu 2023-08-10 11:28:53.871: 05: [02521282] *  D=xiangyu.cn TTL=(10) 
A=[218.85.140.72]
Thu 2023-08-10 11:28:53.871: 05: [02521282] *  D=xiangyu.cn TTL=(10) 
A=[58.23.4.122]
Thu 2023-08-10 11:28:53.899: 05: [02521282] *  P=010 S=001 D=xiangyu.cn 
TTL=(10) MX=[mailmxoutside1.xiangyu.cn]
Thu 2023-08-10 11:28:53.899: 05: [02521282] *  P=030 S=000 D=xiangyu.cn 
TTL=(10) MX=[mailmxoutside2.xiangyu.cn]
Thu 2023-08-10 11:28:53.899: 05: [02521282] *  P=050 S=002 D=xiangyu.cn 
TTL=(10) MX=[mailmxoutside3.xiangyu.cn]
Thu 2023-08-10 11:28:54.006: 05: [02521282] *  D=mailmxoutside1.xiangyu.cn 
TTL=(10) A=[47.57.184.87]
Thu 2023-08-10 11:29:54.012: 04: [02521282] *  DNS: 60 second wait for DNS 
response exceeded (DNS Server: 203.142.82.222)
Thu 2023-08-10 11:30:54.017: 04: [02521282] *  DNS: 60 second wait for DNS 
response exceeded (DNS Server: 203.142.84.222)
Thu 2023-08-10 11:30:54.045: 05: [02521282] *  D=mailmxoutside3.xiangyu.cn 
TTL=(10) A=[180.188.47.197]
Thu 2023-08-10 11:30:54.045: 05: [02521282]  End IP lookup results
Thu 2023-08-10 11:30:54.046: 09: [02521282] Performing SPF lookup 
(mail31.xiangyu.cn / 180.188.47.198)
Thu 2023-08-10 11:31:54.052: 04: [02521282] *  DNS: 60 second wait for DNS 
response exceeded (DNS Server: 203.142.82.222)
Thu 2023-08-10 11:32:54.058: 04: [02521282] *  DNS: 60 second wait for DNS 
response exceeded (DNS Server: 203.142.84.222)
Thu 2023-08-10 11:32:54.058: 09: [02521282] *  Result: none; no SPF record in 
DNS
Thu 2023-08-10 11:32:54.058: 09: [02521282]  End SPF results
Thu 2023-08-10 11:32:54.058: 09: [02521282] Performing SPF lookup (xiangyu.cn / 
180.188.47.198)
Thu 2023-08-10 11:33:54.063: 04: [02521282] *  DNS: 60 second wait for DNS 
response exceeded (DNS Server: 203.142.82.222)
Thu 2023-08-10 11:34:54.069: 04: [02521282] *  DNS: 60 second wait for DNS 
response exceeded (DNS Server: 203.142.84.222)
Thu 2023-08-10 11:34:54.069: 09: [02521282] *  Result: none; no SPF record in 
DNS



Ini problem khas user yang pakai koneksi Biz.net.id (dan link.net.id) 
yang memblock DNS query ke public DNS.

Dampaknya sender host time out.
Tunggu saja resent dari sender host itu.

Rasanya mereka sudah mulai insyaf deh, membolehkan query ke public DNS 
local Indonesia.

Coba di test dari MDaemon server.

c:\ nslookup -t txt xiangyu.cn 203.119.13.77
c:\ nslookup -t txt xiangyu.cn 203.119.13.78

kalau hasilnya mirip dibawah ini, boleh tambahkan IP 
203.119.13.77/203.119.13.78 kedalam MDaemon DNS query.


http://mdaemon.dutaint.co.id/mdaemon/23.0.1/default-domain-and-servers_dns.html

Manually configured DNS servers

$ nslookup -q=txt xiangyu.cn 203.119.13.77
Server: 203.119.13.77
Address:203.119.13.77#53

Non-authoritative answer:
xiangyu.cn	text = "v=spf1 include:spf1.mail.xiangyu.cn 
include:spf2.mail.xiangyu.cn include:spf3.mail.xiangyu.cn -all"




--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 23.5.0 Beta B
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Experience is a hard teacher because she gives the test first, the 
lesson afterwards.

--- Vernon Saunders Law


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.0.2, SecurityGateway 9.0.3




[Mdaemon-L] no SPF record in DNS

2023-08-10 Terurut Topik IT Rimau Group
Dear Pak Syafril,

Mohon dibantu untuk mengecek log dibawah ini kendalanya kenapa ya pak?
padahal dari sender yang sama email satu laginya masuk.

Thu 2023-08-10 11:28:49.889: 05: [02521282] Session 02521282; child 0014
Thu 2023-08-10 11:28:49.889: 05: [02521282] Accepting SMTP connection from
180.188.47.198:54517 to 203.142.69.54:25
Thu 2023-08-10 11:28:49.889: 07: [02521282] Location Screen says connection
is from China, Asia
Thu 2023-08-10 11:28:49.891: 03: [02521282] --> 220 email.rimaugroup.com
ESMTP Thu, 10 Aug 2023 11:28:49 +0700
Thu 2023-08-10 11:28:50.880: 02: [02521282] <-- EHLO mail31.xiangyu.cn
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-email.rimaugroup.com
Hello mail31.xiangyu.cn [180.188.47.198], pleased to meet you
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-ETRN
Thu 2023-08-10 11:28:50.881: 07: [02521282] Location Screening hiding AUTH
from country China, Asia
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-8BITMIME
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-ENHANCEDSTATUSCODES
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-PIPELINING
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-CHUNKING
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250-STARTTLS
Thu 2023-08-10 11:28:50.881: 03: [02521282] --> 250 SIZE 2560
Thu 2023-08-10 11:28:51.286: 02: [02521282] <-- STARTTLS
Thu 2023-08-10 11:28:51.286: 03: [02521282] --> 220 2.7.0 Ready to start TLS
Thu 2023-08-10 11:28:52.945: 01: [02521282] SSL negotiation successful (TLS
1.2, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384)
Thu 2023-08-10 11:28:53.351: 02: [02521282] <-- EHLO mail31.xiangyu.cn
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-email.rimaugroup.com
Hello mail31.xiangyu.cn [180.188.47.198], pleased to meet you
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-ETRN
Thu 2023-08-10 11:28:53.351: 07: [02521282] Location Screening hiding AUTH
from country China, Asia
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-8BITMIME
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-ENHANCEDSTATUSCODES
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-PIPELINING
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-CHUNKING
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250-REQUIRETLS
Thu 2023-08-10 11:28:53.351: 03: [02521282] --> 250 SIZE 2560
Thu 2023-08-10 11:28:53.757: 02: [02521282] <-- MAIL FROM:<
tommyhali...@xiangyu.cn> SIZE=996160
Thu 2023-08-10 11:28:53.768: 05: [02521282] Performing IP lookup (
mail31.xiangyu.cn)
Thu 2023-08-10 11:28:53.861: 05: [02521282] *  D=mail31.xiangyu.cn TTL=(10)
A=[180.188.47.198]
Thu 2023-08-10 11:28:53.861: 05: [02521282]  End IP lookup results
Thu 2023-08-10 11:28:53.868: 05: [02521282] Performing IP lookup (xiangyu.cn
)
Thu 2023-08-10 11:28:53.871: 05: [02521282] *  D=xiangyu.cn TTL=(10)
A=[10.16.120.103]
Thu 2023-08-10 11:28:53.871: 05: [02521282] *  D=xiangyu.cn TTL=(10)
A=[218.85.140.72]
Thu 2023-08-10 11:28:53.871: 05: [02521282] *  D=xiangyu.cn TTL=(10)
A=[58.23.4.122]
Thu 2023-08-10 11:28:53.899: 05: [02521282] *  P=010 S=001 D=xiangyu.cn
TTL=(10) MX=[mailmxoutside1.xiangyu.cn]
Thu 2023-08-10 11:28:53.899: 05: [02521282] *  P=030 S=000 D=xiangyu.cn
TTL=(10) MX=[mailmxoutside2.xiangyu.cn]
Thu 2023-08-10 11:28:53.899: 05: [02521282] *  P=050 S=002 D=xiangyu.cn
TTL=(10) MX=[mailmxoutside3.xiangyu.cn]
Thu 2023-08-10 11:28:54.006: 05: [02521282] *  D=mailmxoutside1.xiangyu.cn
TTL=(10) A=[47.57.184.87]
Thu 2023-08-10 11:29:54.012: 04: [02521282] *  DNS: 60 second wait for DNS
response exceeded (DNS Server: 203.142.82.222)
Thu 2023-08-10 11:30:54.017: 04: [02521282] *  DNS: 60 second wait for DNS
response exceeded (DNS Server: 203.142.84.222)
Thu 2023-08-10 11:30:54.045: 05: [02521282] *  D=mailmxoutside3.xiangyu.cn
TTL=(10) A=[180.188.47.197]
Thu 2023-08-10 11:30:54.045: 05: [02521282]  End IP lookup results
Thu 2023-08-10 11:30:54.046: 09: [02521282] Performing SPF lookup (
mail31.xiangyu.cn / 180.188.47.198)
Thu 2023-08-10 11:31:54.052: 04: [02521282] *  DNS: 60 second wait for DNS
response exceeded (DNS Server: 203.142.82.222)
Thu 2023-08-10 11:32:54.058: 04: [02521282] *  DNS: 60 second wait for DNS
response exceeded (DNS Server: 203.142.84.222)
Thu 2023-08-10 11:32:54.058: 09: [02521282] *  Result: none; no SPF record
in DNS
Thu 2023-08-10 11:32:54.058: 09: [02521282]  End SPF results
Thu 2023-08-10 11:32:54.058: 09: [02521282] Performing SPF lookup (
xiangyu.cn / 180.188.47.198)
Thu 2023-08-10 11:33:54.063: 04: [02521282] *  DNS: 60 second wait for DNS
response exceeded (DNS Server: 203.142.82.222)
Thu 2023-08-10 11:34:54.069: 04: [02521282] *  DNS: 60 second wait for DNS
response exceeded (DNS Server: 203.142.84.222)
Thu 2023-08-10 11:34:54.069: 09: [02521282] *  Result: none; no SPF record
in DNS
Thu 2023-08-10 11:34:54.069: 09: [02521282]  End SPF results
Thu 2023-08-10 11:34:54.069: 03: [02521282] --> 250 2.1.0 Sender OK
Thu 2023-08-10 11:34:54.069: 02: [02521282] <-- RCPT TO:<
an...@rimaugroup.com>
Thu 2023-08-10 11:34:54.073: 03: 

[Mdaemon-L] SSL Expired

2023-08-10 Terurut Topik Syafril Hermansyah via Mdaemon-L

On 8/10/23 15:15, Bambang Setiawan via Mdaemon-L wrote:
FYI Pak, sesuai dengan arahan dari team support, kami downgrade MD nya 
ke 23.0.1 Pak,


Alhamdulillah sepertinya sudah bisa jalan let's encrypt nya.



Bagus.

Saya sudah laporkan ke MDaemon Developer untuk bahwa ada masalah renewal 
SSL R3 di MD 23.0.3 untuk W2K19 (dan W2K22)

Mereka bilang akan periksa dan perbaiki di versi MDaemon berikutnya.


--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 23.5.0 Beta B
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Instruction does much, but encouragement everything.
--- Johann Wolfgang von Goethe


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.0.2, SecurityGateway 9.0.3




[Mdaemon-L] SSL Expired

2023-08-10 Terurut Topik Bambang Setiawan via Mdaemon-L

Dear Pak Syafril,

FYI Pak, sesuai dengan arahan dari team support, kami downgrade MD nya 
ke 23.0.1 Pak,


Alhamdulillah sepertinya sudah bisa jalan let's encrypt nya.

The script run is complete.

Salam

--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.0.2, SecurityGateway 9.0.3




[Mdaemon-L] Connection timed out!

2023-08-10 Terurut Topik Syafril Hermansyah via Mdaemon-L

On 8/10/23 15:03, Rievo Niemrod Efraim via Mdaemon-L wrote:

Mohon bantuannya untuk log error di bawah,

Kira2 kenapa ya Pak ? info dari user kami tidak terima email dari 
niceseaf...@163.com 




Thu 2023-08-10 08:32:34.982: [01238562] <-- DATA
Thu 2023-08-10 08:32:34.984: [01238562] --> 354 Enter mail, end with 
.
Thu 2023-08-10 08:43:31.873: [01238562] Connection timed out!



Ini masalah koneksi yang lambat antara sender ke receiver.
Mestinya sender host akan retry to send.
Ditunggu saja.


--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 23.5.0 Beta B
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

The more that you read, the more things you will know. The more that you 
learn, the more places you'll go.

---  Dr. Seuss, I Can Read With My Eyes Shut!


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.0.2, SecurityGateway 9.0.3




[Mdaemon-L] Connection timed out!

2023-08-10 Terurut Topik Rievo Niemrod Efraim via Mdaemon-L
Selamat Siang

Dear Pak Syafril
Mohon bantuannya untuk log error di bawah,
Kira2 kenapa ya Pak ? info dari user kami tidak terima email dari 
niceseaf...@163.com

Terima Kasih
Rievo

Thu 2023-08-10 08:43:28.587: --
Thu 2023-08-10 08:29:02.494: [01238562] Session 01238562; child 0031
Thu 2023-08-10 08:29:02.494: [01238562] Accepting SMTP connection from 
220.181.12.197:56270 to 172.16.0.6:25
Thu 2023-08-10 08:29:02.494: [01238562] Location Screen says connection is from 
China, Asia
Thu 2023-08-10 08:29:02.495: [01238562] --> 220 bb.ptbmi.com ESMTP MDaemon 
23.0.1; Thu, 10 Aug 2023 08:29:02 +0700
Thu 2023-08-10 08:29:07.217: [01238562] <-- EHLO m12.mail.163.com
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-bb.ptbmi.com Hello 
m12.mail.163.com [220.181.12.197], pleased to meet you
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-ETRN
Thu 2023-08-10 08:29:07.218: [01238562] Location Screening hiding AUTH from 
country China, Asia
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-8BITMIME
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-ENHANCEDSTATUSCODES
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-PIPELINING
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-CHUNKING
Thu 2023-08-10 08:29:07.218: [01238562] --> 250-STARTTLS
Thu 2023-08-10 08:29:07.218: [01238562] --> 250 SIZE
Thu 2023-08-10 08:29:07.446: [01238562] <-- MAIL FROM:
Thu 2023-08-10 08:29:07.451: [01238562] Performing PTR lookup 
(197.12.181.220.IN-ADDR.ARPA)
Thu 2023-08-10 08:29:07.481: [01238562] *  D=197.12.181.220.IN-ADDR.ARPA 
TTL=(0) PTR=[m12.mail.163.com]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.198]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.236]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.233]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.234]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.216]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.214]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.215]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.235]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.196]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.197]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.199]
Thu 2023-08-10 08:29:07.509: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.217]
Thu 2023-08-10 08:29:07.509: [01238562]  End PTR results
Thu 2023-08-10 08:29:07.511: [01238562] Performing IP lookup (m12.mail.163.com)
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.234]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.214]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.197]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.236]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.199]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.215]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.198]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.216]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.233]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[123.126.96.235]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.196]
Thu 2023-08-10 08:29:07.539: [01238562] *  D=m12.mail.163.com TTL=(0) 
A=[220.181.12.217]
Thu 2023-08-10 08:29:07.539: [01238562]  End IP lookup results
Thu 2023-08-10 08:29:07.543: [01238562] Performing IP lookup (163.com)
Thu 2023-08-10 08:29:07.568: [01238562] *  D=163.com TTL=(0) A=[123.58.180.7]
Thu 2023-08-10 08:29:07.568: [01238562] *  D=163.com TTL=(0) A=[123.58.180.8]
Thu 2023-08-10 08:29:07.595: [01238562] *  P=010 S=000 D=163.com TTL=(10) 
MX=[163mx01.mxmail.netease.com]
Thu 2023-08-10 08:29:07.595: [01238562] *  P=010 S=001 D=163.com TTL=(10) 
MX=[163mx02.mxmail.netease.com]
Thu 2023-08-10 08:29:07.595: [01238562] *  P=010 S=002 D=163.com TTL=(10) 
MX=[163mx03.mxmail.netease.com]
Thu 2023-08-10 08:29:07.595: [01238562] *  P=050 S=003 D=163.com TTL=(10) 
MX=[163mx00.mxmail.netease.com]
Thu 2023-08-10 08:29:07.620: [01238562] *  D=163mx01.mxmail.netease.com TTL=(0) 
A=[103.129.252.82]
Thu 2023-08-10 08:29:07.652: [01238562] *  D=163mx02.mxmail.netease.com TTL=(0) 
A=[103.129.252.82]
Thu 2023-08-10 08:29:07.676: [01238562] *  D=163mx03.mxmail.netease.com TTL=(0) 
A=[103.129.252.82]
Thu 2023-08-10 08:29:07.701: [01238562] *  D=163mx00.mxmail.netease.com TTL=(0) 
A=[220.181.12