• Our team is looking to connect with folks who use email services provided by Plesk, or a premium service. If you'd like to be part of the discovery process and share your experiences, we invite you to complete this short screening survey. If your responses match the persona we are looking for, you'll receive a link to schedule a call at your convenience. We look forward to hearing from you!
  • We are looking for U.S.-based freelancer or agency working with SEO or WordPress for a quick 30-min interviews to gather feedback on XOVI, a successful German SEO tool we’re looking to launch in the U.S.
    If you qualify and participate, you’ll receive a $30 Amazon gift card as a thank-you. Please apply here. Thanks for helping shape a better SEO product for agencies!
  • The BIND DNS server has already been deprecated and removed from Plesk for Windows.
    If a Plesk for Windows server is still using BIND, the upgrade to Plesk Obsidian 18.0.70 will be unavailable until the administrator switches the DNS server to Microsoft DNS. We strongly recommend transitioning to Microsoft DNS within the next 6 weeks, before the Plesk 18.0.70 release.
  • The Horde component is removed from Plesk Installer. We recommend switching to another webmail software supported in Plesk.

Premium Outbound Antispam: Header X-CTCH-SenderID always 127.0.0.1

DrTommy

New Pleskian
Hi,

We paid to have Parallels Premium Outbound Antispam running on one of our servers but we're having some difficulties with the statistics and headers.

After solving issues with the script that calculates statistics, we noticed that most of the spam was generated by 127.0.0.1. Initially I thought that the spam messages could have been generated by a PHP script but after some research, I noticed that the SenderID header is not properly obtained / kept for emails.

I configured PPOA to save spam / suspected spam messages and while looking at the headers I noticed that about 93% of the messages have:
Code:
X-CTCH-SenderID: 127.0.0.1

Then I found this document http://www.commtouch.com/uploads/pd...nd-Spam-Protection-Configuration-Modified.pdf and this description:
Code:
X-CTCH-SenderID: [email protected] –ID of the message sender

So my questions / issues are:
1: I have configured PPOA to use 'SMTP authentication username' as the Unique Sender Identifier and outgoing email requires an authenticated user. Why is SenderID only keeping 127.0.0.1?
2: Most of the message where not originated from within localhost (comparing 'X-CTCH-SenderID' with the 'Received' header). Why is there a difference?
3: Since most of the messages are incoming spam, why is Parallels Premium Outbound Antispam catching them? Should PPOA be running only for outgoing messages?
4: How is this affecting the Dashboard statistics presented in the main page of Parallels Premium Outbound Antispam?

System information:
Code:
Architecture: Linux 2.6.32-358.14.1.el6.x86_64 #1 SMP Tue Jul 16 23:51:20 UTC 2013 x86_64 x86_64 x86_64 GNU/Linux
OS: CentOS 6.4 (Final)
Panel version: 11.5.30 Update #13 - psa-11.5.30-cos6.build115130819.13.x86_64

At this point we're not really sure of how reliable PPOA's operation and generated information is so any comments / suggestions / similar experiences that you might have would be greatly appreciated.

Thanks!
 
Did you ever have a solution for this?

Are the mails with 127.0.0.1 header mails that have been forwarded internally?

I have a similar issue with 127.0.0.1 being blocked, and internal forwarded mail no longer working.

Unfortunately there doesn't seem to be any support for PPOA.
 
Back
Top