Topic: Spam behaviour is odd
==== Required information ====
- iRedMail version:
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
- Linux/BSD distribution name and version:
- Related log if you're reporting an issue:
======== Required information ====
- iRedMail version: 0.8.7
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySql
- Linux/BSD distribution name and version: Wheezy
- Related log if you're reporting an issue:
====
I tested spam behaviour with this free online service: http://www.emailsecuritycheck.net/
This service sends seven emails which should get banned. What happend? All emails except for email2 did enter my mailbox:
- 1) Test mail 1/7 (ID=c6nbPKFQuvszu3lCPSHYAA==)
- 2) -> not received
- 3) *** SPAM *** Test mail 3/7 (ID=c6nbPKFQuvszu3lCPSHYAA==)
- 4) Test mail 4/7 (ID=c6nbPKFQuvszu3lCPSHYAA==)
- 5) Test mail 5/7 (ID=c6nbPKFQuvszu3lCPSHYAA==)
- 6) Test mail 6/7 (ID=c6nbPKFQuvszu3lCPSHYAA==)
- 7) Test mail 7/7 (ID=c6nbPKFQuvszu3lCPSHYAA==)
Postmaster received seven emails:
- 1) BANNED contents (application/x-msdownload,.asc,attached.bat) in mail FROM LOCAL [78.47.119.33]:46094 <securitycheck@emailsecuritycheck.net>
- 2) VIRUS (Eicar-Test-Signature) in mail FROM LOCAL [78.47.119.33]:45631 <securitycheck@emailsecuritycheck.net>
- 3) Spam FROM LOCAL [78.47.119.33]:58287 <securitycheck@emailsecuritycheck.net>
- 4) BANNED contents (application/x-msdownload,.asc,attached.bat,attached.bat) in mail FROM LOCAL [78.47.119.33]:39333 <securitycheck@emailsecuritycheck.net>
- 5) BANNED contents (application/x-msdownload,.asc) in mail FROM LOCAL [78.47.119.33]:57379 <securitycheck@emailsecuritycheck.net>
- 6) BANNED contents (application/x-msdownload,.asc,attached.()bat) in mail FROM LOCAL [78.47.119.33]:53361 <securitycheck@emailsecuritycheck.net>
- 7) BANNED contents (application/x-msdownload,.asc,attached\) in mail FROM LOCAL [78.47.119.33]:43625 <securitycheck@emailsecuritycheck.net>
Now my questions:
- why are those emails not moved to junk server side?
- why did postmaster get all those message from iredmail?
This is still a test system. This spam behaviour doesn't seem to be production ready for me.
Do I miss something?
Thanks
----
Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.