Problems with system e-mails sent by ISPconfig member servers to administrator

Discussion in 'Installation/Configuration' started by ggallo, Aug 22, 2022.

    Hello Forum Members,

    I searched the forums on all the keywords I can imagine on this problem, but found nothing yet, so I ask my question. Sorry, if it's a duplicate.

    We have a multiserver setup with separated everything, and I configured the System/Main config/Mail/Administrators e-mail section to use Submission/TLS with auth for sending system emails, with the SMTP server is the "local" ISPC mail member server. From and To email addresses are the same now (and the SMTP auth uses this mailbox, of course).
    All system emails sent by the admin panel server is good (it sends with Submission/auth with the specified mailbox), but all other member server's system email messages are relayed by the member server's local postfix MTA (not sent with the SMTP authenticated mailbox set up in the main config), and all of these emails get marked as spam (or rejected by) rspamd on mail member server, because the lack of SPF and DKIM, etc.

    My question is that I configured anything wrong (at install time or later), or the main config setting is not that system wide for multiserver setups, and simply I could manually configure the MTAs on the member servers to use Submission authenticated sending with my specified SMTP server and mailbox?
    Which emails are send from those systems? I don't think ISPConfig sends any?
    I usually get a moderate number of e-mails from the NS servers, when I add a new DNS domain through the ISPConfig admin interface.
    I'll show you the source of a mail sent by one of the DNS servers:

    Return-Path: <[email protected]>
    Delivered-To: [email protected]
    Received: from
        by with LMTP
        id eDWiHgpCB2PQRwAAmAFBUQ
        (envelope-from <[email protected]>)
        for <[email protected]>; Thu, 25 Aug 2022 11:34:02 +0200
    Received: from (unknown [])
        by (Postfix) with ESMTP id 0AC9790
        for <[email protected]>; Thu, 25 Aug 2022 11:34:02 +0200 (CEST)
    Received: by (Postfix, from userid 0)
        id 06A7F1FDC1; Thu, 25 Aug 2022 11:34:02 +0200 (CEST)
    To: [email protected]
    Subject: [] 25.08.2022-11:34 - WARNING - Falsche Anfrage / Wron...
    MIME-Version: 1.0
    Content-type: text/plain; charset=utf-8
    Content-Transfer-Encoding: 8bit
    From: [email protected]
    Reply-To: [email protected]
    Message-Id: <[email protected]>
    Date: Thu, 25 Aug 2022 11:34:02 +0200 (CEST)
    ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed;;
        s=h4u; t=1661420042; h=from:from:reply-to:reply-to:subject:subject:date:date:
    ARC-Authentication-Results: i=1;;
        dmarc=fail reason="No valid SPF, No valid DKIM" (policy=none);
        spf=none ( domain of [email protected] has no SPF policy when checking [email protected]
    ARC-Seal: i=1; s=h4u;; t=1661420042; a=rsa-sha256; cv=none;
    X-Spam-Level: ***
    X-Spam-Status: No, score=3.60
        dmarc=fail reason="No valid SPF, No valid DKIM" (policy=none);
        spf=none ( domain of [email protected] has no SPF policy when checking [email protected]
    X-Spamd-Bar: +++ - 25.08.2022-11:34 - WARNING - Falsche Anfrage / Wrong QuerySQL-Query = UPDATE `dns_soa` SET `rendered_zone`='$TTL        3600\[email protected]       IN      SOA (\n                        2022082508       ; serial, todays date + todays serial #\n                        7200              ; refresh, seconds\n                        540              ; retry, seconds\n                        604800              ; expire, seconds\n                        3600 )            ; minimum, seconds\n;\n\nautoconfig 3600      A\nautodiscover 3600      A\nmail 3600      A\noldmail 3600      A\ 3600      A\nwww 3600      A\nsupport 3600      CNAME\ 3600      MX     10\ 3600      NS\nsupervisor4u.
     hu. 3600      NS\n_autodiscover._tcp 3600      SRV    0 100 443\ 3600      TXT        \"v=spf1 mx a ~all\"\ 3600      TXT        \"v=DKIM1; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzdJ3VT0ysU+sUUSQkNeHyfXzyLx1IRMaqHaqcG8/IUEiHixUtQjfPWXe15JNIMC4B1CyR/Hqz+rngNciZpgm2fALRXDiF0ORN0LlpcIqLZ9HQ1G4reHQ1EBlLJeCRngwF5mqm7/1E86J6mONK1+XhE16S/nvd13mLQPJM1OeF8Er5Cia09Q1Sihr8rD+wsgWbM5\" \"BYalLP1JoQsuMs4SPlIdQ71twWojn2w3pmbLBxiLQYy726AGhj0kt139Or2zAy4OB3544wWFs0sVMcytzsCNOzJZEzjvTSs/5dIn5Ztz41pZwro55RORJ3f+IriK6oDNoKOs0ST1P3PWvPMMtfwIDAQAB\"\ 3600      TXT        \"v=DMARC1; p=none; rua=mailto:[email protected]\"\n' WHERE id='21' -> 1143 (UPDATE command denied to user 'ispcsrv3'@'' for column 'rendered_zone' in table 'dns_soa')
    I think there are no private/secret information in this snippet, so I'm not changing anything.
    When the new DNS zone and/or new record addition finished, everything working great, there are no problems with the zone. So I don't know why I receive these mails. I receive these mails from NS1 and NS2, too.

    Thank you for your help!
    Probably because of the warning:
    Code: - 25.08.2022-11:34 - WARNING - Falsche Anfrage / Wrong QuerySQL-Query = UPDATE `dns_soa` SET `rendered_zone`='$TTL    ...

