[Mdaemon-L] Gagal kirim email ke Yahoo

2024-05-16 Terurut Topik Bonar Gultom via Mdaemon-L
Dear Pak Syafril,

Update info per hari ini pengiriman email ke @yahoo.com sudah mulai berhasil 
masuk ke inbox yahoo.

Selain update spf dan mx record yang dilakukan kemarin, kami juga membuat aduan 
ke postmaster yahoo melalui https://senders.yahooinc.com/contact/

Terima kasih pak atas bantuan analisisnya.

Regards,
Bonar

The information and any attachments on this email may contain confidential 
information. It is intended for the use of the person or entity to which it is 
addressed only. If you have received it in error, please notify the sender 
immediately and delete this email afterwards. If you are not the intended 
recipient you are notified that disclosing, copying, distributing or taking any 
action in reliance on the contents of this email is strictly prohibited. Thank 
you.



--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.com
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.5.3, SecurityGateway 10.0.0



[Mdaemon-L] Gagal kirim email ke Yahoo

2024-05-16 Terurut Topik Syafril Hermansyah via Mdaemon-L

On 5/16/24 16:03, Bonar Gultom via Mdaemon-L wrote:

 >>SPF nya tidak tepat sehingga receiver domain yahoo.com tidak
 >>mengenalinya dengan baik sehingga dianggap mail dikirim dari server yang
 >>tidak punya valid SPF record.

Baik pak, SPF record nya sudah kami perbaiki.

 >>Apakah DNS MX recordnya baru diganti namanya?

Iya pak, namun saat ini sudah kami update. MX Record saat ini adalah sbb:

;; ANSWER SECTION:
ciputra.co.id.          1800    IN      MX      10 mail.ciputra.co.id.



Bagus, itu perlu diubah (dikembalikan ke semula) karena berkaitan dengan 
SSL host key.
Dengan dikembalikan ke mail.ciputra.co.id maka koneksi SSL/TLS akan 
berjalan baik.



Mohon bantuan analisis selanjutnya pak.



Mestinya mail yang kemarin ke yahoo.com sudah bisa (kembali normal) kan?

Dengan hosting server di cloud server luar negeri mestinya tidak ada 
lagi kendala dengan DNS resolver, karena aturan DNS filtering/hijacking 
hanya terjadi di Indonesia saja khususnya koneksi internet korporasi.


Sebenarnya Cloud hosting di Indonesia juga tidak terkena aturan DNS 
filtering, DNS hijacking dan bebas bandwidth meter.





$ openssl s_client -starttls smtp -connect 
azure-cipdev-mailserver.southeastasia.cloudapp.azure.com:25

CONNECTED(0003)
depth=2 C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST 
Network, CN = USERTrust RSA Certification Authority

verify return:1
depth=1 C = GB, ST = Greater Manchester, L = Salford, O = Sectigo 
Limited, CN = Sectigo RSA Domain Validation Secure Server CA

verify return:1
depth=0 CN = mail.ciputra.co.id
verify return:1
---

--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 24.0.0 Beta RC1
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Learning without thought is labor lost; thought without learning is 
perilous.

--- Confucius (551 BC - 479 BC), The Confucian Analects


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.com
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.5.3, SecurityGateway 10.0.0





[Mdaemon-L] Gagal kirim email ke Yahoo

2024-05-16 Terurut Topik Bonar Gultom via Mdaemon-L
>>SPF nya tidak tepat sehingga receiver domain yahoo.com tidak
>>mengenalinya dengan baik sehingga dianggap mail dikirim dari server yang
>>tidak punya valid SPF record.

Baik pak, SPF record nya sudah kami perbaiki.

>>Apakah DNS MX recordnya baru diganti namanya?

Iya pak, namun saat ini sudah kami update. MX Record saat ini adalah sbb:

;; ANSWER SECTION:
ciputra.co.id.  1800IN  MX  10 mail.ciputra.co.id.

score dari mail-tester.com juga mendapatkan 10/10

https://www.mail-tester.com/test-8ez7001bl

Mohon bantuan analisis selanjutnya pak.

Terima kasih.

Regards,
Bonar




The information and any attachments on this email may contain confidential 
information. It is intended for the use of the person or entity to which it is 
addressed only. If you have received it in error, please notify the sender 
immediately and delete this email afterwards. If you are not the intended 
recipient you are notified that disclosing, copying, distributing or taking any 
action in reliance on the contents of this email is strictly prohibited. Thank 
you.



--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.com
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.5.3, SecurityGateway 10.0.0



[Mdaemon-L] Gagal kirim email ke Yahoo

2024-05-15 Terurut Topik Syafril Hermansyah via Mdaemon-L

On 5/15/24 14:27, Bonar Gultom via Mdaemon-L wrote:
Mohon bantuan analisis nya, dari MDaemon kami gagal kirim ke email yahoo 
. Terlampir log smtp-out nya . Kami baru migrasi server MDaemon dari On 
Premise ke Cloud, dan error ini baru muncul pada hari ini. Selama 2 
minggu ke belakang masih normal saja untuk kirim email ke yahoo.




Wed 2024-05-15 14:15:15.2 02: [435971] <-- 421 4.7.0 [TSS04] Messages from 
20.6.97.20 temporarily deferred due to unexpected volume or user complaints - 
4.16.55.1; see https://postmaster.yahooinc.com/error-codes



Mail ditolak sementara karena dianggap terlalu banyak kirim mail ke 
domain yahoo.com family (yahoo.com, yahoo.co.id, ymail.com, aol.com dls).




SPF, DKIM, PTR record juga sudah kami buatkan.



SPF nya tidak tepat sehingga receiver domain yahoo.com tidak 
mengenalinya dengan baik sehingga dianggap mail dikirim dari server yang 
tidak punya valid SPF record.

Apakah DNS MX recordnya baru diganti namanya?


$ host -v -t txt ciputra.co.id

;; ANSWER SECTION:
ciputra.co.id.  2704IN  TXT "v=spf1 a mx -all"

Coba diubah menjadi

ciputra.co.id.		2704	IN	TXT	"v=spf1 ip4=20.6.97.20 a=mail.ciputra.co.id 
mx -all"


$ host -v -t mx ciputra.co.id

;; ANSWER SECTION:
ciputra.co.id.		2497	IN	MX	10 
azure-cipdev-mailserver.southeastasia.cloudapp.azure.com.








--
syafril

Syafril Hermansyah
MDaemon-L Moderators, running MDaemon 24.0.0 Beta RC1
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

I don’t care that they stole my idea… I care that they don’t have any of 
their own

--- Nikola Tesla


--
--[mdaemon-l]--
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.com
Berlangganan: Kirim mail ke mdaemon-l-subscr...@dutaint.com
Henti Langgan: Kirim mail ke mdaemon-l-unsubscr...@dutaint.com
Versi terakhir: MDaemon 23.5.3, SecurityGateway 10.0.0





[Mdaemon-L] Gagal kirim email ke Yahoo

2024-05-15 Terurut Topik Bonar Gultom via Mdaemon-L
Dear Pak Syafril,

Mohon bantuan analisis nya, dari MDaemon kami gagal kirim ke email yahoo . 
Terlampir log smtp-out nya . Kami baru migrasi server MDaemon dari On Premise 
ke Cloud, dan error ini baru muncul pada hari ini. Selama 2 minggu ke belakang 
masih normal saja untuk kirim email ke yahoo.

Wed 2024-05-15 14:15:13.5 05: [435971] Session 435971; child 0006
Wed 2024-05-15 14:15:13.5 01: [435971] Parsing message 

Wed 2024-05-15 14:15:13.5 01: [435971] * From: bonar.gul...@ciputra.co.id
Wed 2024-05-15 14:15:13.5 01: [435971] * To: boj...@yahoo.com
Wed 2024-05-15 14:15:13.5 01: [435971] * Subject: test kirim ke yahoomail
Wed 2024-05-15 14:15:13.5 01: [435971] * Size (bytes): 3376
Wed 2024-05-15 14:15:13.5 01: [435971] * Message-ID: 

Wed 2024-05-15 14:15:13.5 05: [435971] Resolving MX record for yahoo.com (DNS 
Server: 8.8.8.8)...
Wed 2024-05-15 14:15:13.5 05: [435971] * P=001 S=000 D=yahoo.com TTL=(0) 
MX=[mta6.am0.yahoodns.net]
Wed 2024-05-15 14:15:13.5 05: [435971] * P=001 S=001 D=yahoo.com TTL=(0) 
MX=[mta5.am0.yahoodns.net]
Wed 2024-05-15 14:15:13.5 05: [435971] * P=001 S=002 D=yahoo.com TTL=(0) 
MX=[mta7.am0.yahoodns.net]
Wed 2024-05-15 14:15:13.5 05: [435971] Attempting SMTP connection to 
mta6.am0.yahoodns.net
Wed 2024-05-15 14:15:13.5 05: [435971] Resolving A record for 
mta6.am0.yahoodns.net (DNS Server: 8.8.8.8)...
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[98.136.96.75]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[98.136.96.77]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[67.195.228.94]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[67.195.204.72]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[98.136.96.74]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[67.195.228.111]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[98.136.96.91]
Wed 2024-05-15 14:15:13.5 05: [435971] * D=mta6.am0.yahoodns.net TTL=(0) 
A=[67.195.204.79]
Wed 2024-05-15 14:15:13.5 05: [435971] Randomly picked 98.136.96.75 from list 
of possible hosts
Wed 2024-05-15 14:15:13.5 05: [435971] Attempting SMTP connection to 
98.136.96.75:25
Wed 2024-05-15 14:15:13.5 05: [435971] Waiting for socket connection...
Wed 2024-05-15 14:15:13.7 05: [435971] * Connection established 
10.45.45.14:55574 --> 98.136.96.75:25
Wed 2024-05-15 14:15:13.7 05: [435971] Waiting for protocol to start...
Wed 2024-05-15 14:15:13.9 02: [435971] <-- 220 
mtaproxy110.free.mail.ne1.yahoo.com ESMTP ready
Wed 2024-05-15 14:15:13.9 03: [435971] --> EHLO mail.ciputra.co.id
Wed 2024-05-15 14:15:14.1 02: [435971] <-- 
250-mtaproxy110.free.mail.ne1.yahoo.com
Wed 2024-05-15 14:15:14.1 02: [435971] <-- 250-PIPELINING
Wed 2024-05-15 14:15:14.1 02: [435971] <-- 250-SIZE 41943040
Wed 2024-05-15 14:15:14.1 02: [435971] <-- 250-8BITMIME
Wed 2024-05-15 14:15:14.1 02: [435971] <-- 250 STARTTLS
Wed 2024-05-15 14:15:14.1 03: [435971] --> STARTTLS
Wed 2024-05-15 14:15:14.4 02: [435971] <-- 220 Ready for TLS
Wed 2024-05-15 14:15:14.8 01: [435971] SSL negotiation successful (TLS 1.2, 255 
bit key exchange, 128 bit AES encryption)
Wed 2024-05-15 14:15:14.8 01: [435971] SSL certificate is valid (matches 
mta6.am0.yahoodns.net and is signed by recognized CA)
Wed 2024-05-15 14:15:14.8 03: [435971] --> EHLO mail.ciputra.co.id
Wed 2024-05-15 14:15:15.0 02: [435971] <-- 
250-mtaproxy110.free.mail.ne1.yahoo.com
Wed 2024-05-15 14:15:15.0 02: [435971] <-- 250-PIPELINING
Wed 2024-05-15 14:15:15.0 02: [435971] <-- 250-SIZE 41943040
Wed 2024-05-15 14:15:15.0 02: [435971] <-- 250-8BITMIME
Wed 2024-05-15 14:15:15.0 02: [435971] <-- 250 OK
Wed 2024-05-15 14:15:15.0 03: [435971] --> MAIL 
From: SIZE=3376
Wed 2024-05-15 14:15:15.2 02: [435971] <-- 421 4.7.0 [TSS04] Messages from 
20.6.97.20 temporarily deferred due to unexpected volume or user complaints - 
4.16.55.1; see https://postmaster.yahooinc.com/error-codes
Wed 2024-05-15 14:15:15.2 03: [435971] --> QUIT
Wed 2024-05-15 14:15:15.2 05: [435971] Attempting SMTP connection to 
mta5.am0.yahoodns.net
Wed 2024-05-15 14:15:15.2 05: [435971] Resolving A record for 
mta5.am0.yahoodns.net (DNS Server: 8.8.8.8)...
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[98.136.96.74]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[67.195.204.72]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[67.195.204.73]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[67.195.228.111]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[98.136.96.77]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[67.195.204.79]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[98.136.96.75]
Wed 2024-05-15 14:15:15.2 05: [435971] * D=mta5.am0.yahoodns.net TTL=(0) 
A=[98.136.96.91]