Topic: How to check and secure my installation?
Hello,
I am a happy user of iredmail. Since many years now I host my own "family-mailserver" successfull without any problems. But now, I did the same installation again for a friend, who also wanted to host his own mailsystem. I used a cheap VPS for that, Ubuntu22.04LTS and executed the great installer-script "iRedMail.sh", setup the DNS (dkim._domainkey.acocare.de.). Then I checked "the quality of my new mailserver" with mail-tester.com and got a score of 9.0 out of 10.0, so I thought everything is setup ok. But some time later I got a warning from my VPS-provider, that I am reaching a server-limit for traffic on port 25 soon and checked (via "mailq") that I had many thousend emails in the queue (!). I have no idea of how to find, how I can avoid this spam on the server.
iredmail version 1.6.3 deployed with iRedMail.sh.
Enabled services: rsyslog postfix mysql nginx php8.1-fpm dovecot clamav-daemon amavis clamav-freshclam sogo memcached fail2ban cron nftables
Is there any "cookbook" for me, to re-check my configuration and find this misconfiguration?
_______
Now, I get a score of 7.5 of 10.0 (beeing listed in 3 Blacklists) - see attachment screenshot
----
Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.