This article will outline some basic steps to increase the security of cPanel and reduce SPAM but only as an end user. This is not targetted at people who have access to the server, but they can use this information.
To Reduce SPAM
Enable the following services:
- DMARC
- SPF
- DKIM
- Forced SMTP Authentication - I believe this can help with delivery.
- Forced SSL/TLS SMTP - Disable all plain text email services.
- SpamAssassin - Use the following settings
- score BAYES_95 - 4.5
- score BAYES_99 - 6.0
- score BAYES_999 - 7.0
- score SPF_FAIL - 10.0
- score SPF_SOFTFAIL - 10.0
- score URIBL_BLACK - 6.0
- score URIBL_DBL_SPAM - 6.0
- score URIBL_JP_SURBL - 4.0
- score URIBL_WS_SURBL - 4.0
Services
Enable the following services:
- DNSSEC
- Anti-Virus
- ClamAV
- Ummunify
Things to do
- Go through the cPanel Security Center
- Run Health Check
- Run Security Advisor
- Check for any account over-quota, this can be a sign of a virus.
- Only use secure DNS providers such as 9.9.9.9 and avoid using 8.8.8.8 etc..