Postfix:收到不属于我的域名的邮件

我们正在使用自定义SA规则等的postfix / dovecot / amavis / spamassassinconfiguration。

但是,即使没有垃圾邮件testing头文件和dkimtesting,一些奇怪的邮件也会发送给我们

示例标题:

Return-Path: <[email protected]> Delivered-To: [email protected] Received: from localhost (localhost [127.0.0.1]) by mx.ourserver.cz (Postfix) with ESMTP id 8A6854207E for <[email protected]>; Thu, 14 Sep 2017 08:00:54 +0200 (CEST) X-Virus-Scanned: Debian amavisd-new at mx.ourserver.cz Received: from mx.ourserver.cz ([127.0.0.1]) by localhost (mx.ourserver.cz [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mAd28zkivdoO for <[email protected]>; Thu, 14 Sep 2017 08:00:51 +0200 (CEST) Received-SPF: pass (fenixinc.biz.ua: 62.141.46.12 is authorized to use '[email protected]' in 'mfrom' identity (mechanism 'a/24' matched)) receiver=mx.ourserver.cz; identity=mailfrom; envelope-from="[email protected]"; helo=mail.fenixinc.biz.ua; client-ip=62.141.46.12 Received: from mail.fenixinc.biz.ua (mail.fenixinc.biz.ua [62.141.46.12]) by mx.ourserver.cz (Postfix) with ESMTP id A236542011 for <[email protected]>; Thu, 14 Sep 2017 08:00:51 +0200 (CEST) Received: from fenixinc.biz.ua (mail.fenixinc.biz.ua [62.141.46.12]) by mail.fenixinc.biz.ua (Postfix) with ESMTPA id 833118C313; Thu, 14 Sep 2017 06:07:31 +0300 (EEST) Message-ID: <[email protected]> Reply-To: "ED Packs" <[email protected]> From: "ED Packs" <[email protected]> To: <**[email protected]**> Subject: ED Packs for Potency Date: Thu, 14 Sep 2017 06:07:35 +0300 MIME-Version: 1.0 Content-Type: multipart/related; type="multipart/alternative"; boundary="----=_NextPart_000_0006_01D32D1F.7177D070" Precedence: bulk List-Id: b30356035v06500326 X-Complaints-To: [email protected] List-Unsubscribe: <http://fenixinc.biz.ua/ru/unsubscribe/do?hash=7468576857015011> 

正如你所看到的, TO:[email protected],这绝对不是我们的域名甚至是用户,但奇怪地传递给随机用户的邮箱。 没有域名篮子在使用中。

可能是什么问题呢?

发送电子邮件时,SMTP服务器正在创build一个SMTP信封,其中包含收件人( RCPT TO:标头和邮件发件人( MAIL FROM:标头。 收件人标题用于确定电子邮件的实际收件人。 To:电子邮件阅读器(电子邮件DATA一部分)使用标题向您显示收件人是谁。 信封和DATA头地址通常会匹配,但不一定。 垃圾邮件发送者经常伪造这些头文件来试图避免垃圾邮件filter。

看到你的Postfix或SpamAssassin / Amavis日志会很有趣。 尝试看看后缀地址validation和后缀smtp中继和访问控制页面。