I have confirmed access to the provided server, and I am familiarizing myself with your ticket request.
While this ticket is being reviewed, we ask that you do not work on your server except in emergency situations, so as to not cause any conflicts.
Please make sure to check your email in case we require access to any information that may assist us in resolving your issue.
After a quick review, I noticed that the SPF record is set to soft fail
~all
This will need to be adjusted as it appears the majority of the spam is due to people pretending to send on behalf of XXXXX.DZ and using different servers to do so.
With a soft fail, this prevents most servers from denying the mail outright due to a lack of "permission checking" and the mail you are receiving is a result of the "bounces" because the server is not confirming or denying that it is permitted to send.
For more information about SPF records, please refer to the link below.
SPF records: Hard Fail vs Soft Fail?
How do I verify my SPF records are working?
Preventing spoofed emails
I also noticed you do have a DMARC implemented but it is not fully setup, you may want to review that and work to make it a bit stronger. Please refer to the documentation below for DMARC information
What is DMARC?
You will want to discuss these matters with a qualified system administrator to set up templates for any future accounts to make sure all of their mail settings are set up to be hardened on initial creation.
For more information on our zone templates, please refer to the link below
https://docs.cpanel.net/whm/dns-functions/edit-zone-templates/
Please note that cPanel, LLC only supports the cPanel-provided software and does not provide general system-administration services. You may, therefore, wish to seek assistance from a qualified system administrator for this issue.
Commentaires
Enregistrer un commentaire