Articles in this section

How to protect a Plesk mail server against mail spoofing

Plesk for Windows kb: how-to Plesk for Linux

Applicable to:

  • Plesk for Linux
  • Plesk for Windows

Question

How to protect a Plesk mail server against mail spoofing?

  • Others are sending emails through my Plesk mail server, how to stop this from happening?
  • My Plesk mail server appears to be acting as an open mail relay and people are sending spam from it, what can be done to prevent this?

Answer

Plesk for Linux
  1. Log in to Plesk.
  2. Go to Tools & Settings > Mail Server Settings > SPF spam protection.
  3. Verify that the setting Enable SPF spam protection to check incoming mail is ticked.
  4. Set SPF checking mode to Reject mail when SPF does not resolve to “pass”
  5. Apply the changes.

     

     

  6. Install Plesk Email Security from Plesk Extensions.
  7. Go to Tools & Settings > Plesk Email Security (under Mail section) > switch to the Server Settings tab.
  8. Expand Advanced and under Postfix - Strict Rules check the Enable strict rules box.

     

     

  9. Click Save.
Plesk for Windows Server

 

With MailEnable Standard edition, the following options are available against email spoofing:

  1. Enable SpamAssassin spam filter in Plesk at Tools & Settings > Spam Filter.
    Once enabled, configure SpamAssassin spam score setting.

    Note: If SpamAssassin does not catch the spoofed emails with default settings, try decreasing the spam score value.

  2. If you are using mail clients (for example, Outlook) for email management, you can set up rules that will automatically move spoofed emails with specific words in the subject to Junk or Deleted folders.
  3. Block sender IP addresses via Firewall.
    While it might be a time-consuming task, blocking senders' IP addresses which send the spoofed emails is the most reliable way with MailEnable Standard edition.

 

MailEnable offers licensed editions, which you may consider upgrading to - Professional, Enterprise or Premium.
All three editions give access to spam settings and mail filtering features:

Was this article helpful?

Comments

0 comments

Please sign in to leave a comment.