Quantcast
Channel: Sophos User Bulletin Board
Viewing all articles
Browse latest Browse all 14361

[8.965] Email Protection - Unable to deliver to a specific domain

$
0
0
Hi,

First post from a new Astaro user so first up sorry if I haven't posted correctly or made some other newbie mistake...

We have an ASG220 with the following setup:

Firmware version:8.965-7, Pattern version:25126, Exchange 2010 Sp2, SMTP is in simple mode, our ASG sits behind an upstream provider with our MX record pointing to a public IP on their network. They then forward SMTP to the external interface of our ASG which has an external interface IP of 10.99.200.1

We're having a weird problem where I cannot send email to one particular domain. Initially all emails sent to this domain were stuck in the spooler. After 6-7 days and a few attempts to resubmit the retry time limit was reached and all of the messages were bounced. Now if I send a test email to an email address in this domain I get an NDR immediately. Sample SMTP log with addresses modified show the following:

2012:06:13-15:37:00 utm-1 exim-out[23637]: 2012-06-13 15:37:00 End queue run: pid=23637
2012:06:13-15:37:36 utm-1 exim-in[4987]: 2012-06-13 15:37:36 SMTP connection from [10.99.1.14]:62077 (TCP/IP connection count = 1)
2012:06:13-15:37:36 utm-1 exim-in[23648]: 2012-06-13 15:37:36 H=omb-exchange.ombbris.local [10.99.1.14]:62077 Warning: Exception matched: Skipping greylisting for this message
2012:06:13-15:37:36 utm-1 exim-in[23648]: 2012-06-13 15:37:36 [10.99.1.14] F=<nnn@ombudsman.qld.gov.au> R=<zzz.t.triggs@tmr.qld.gov.au> Accepted: from relay
2012:06:13-15:37:38 utm-1 exim-in[23648]: 2012-06-13 15:37:38 1SegGu-00069Q-0w ctasd reports 'Unknown' RefID:str=0001.0A150202.4FD82722.019A,ss=1,re=0.00 0,recu=0.000,reip=0.000,cl=1,cld=1,fgs=0
2012:06:13-15:37:38 utm-1 exim-in[23648]: 2012-06-13 15:37:38 1SegGu-00069Q-0w <= nnn@ombudsman.qld.gov.au H=omb-exchange.ombbris.local [10.99.1.14]:62077 P=esmtp S=23006 id=29AE3A518375E54BB9D199A1D142F6BA71D7EC@OMB-EXCHANGE.ombbris.local
2012:06:13-15:37:38 utm-1 exim-in[23648]: 2012-06-13 15:37:38 SMTP connection from omb-exchange.ombbris.local [10.99.1.14]:62077 closed by QUIT
2012:06:13-15:37:40 utm-1 smtpd[4942]: QMGR[4942]: 1SegGu-00069Q-0w moved to work queue
2012:06:13-15:37:50 utm-1 smtpd[23654]: SCANNER[23654]: 1SegH8-00069W-7E <= nnn@ombudsman.qld.gov.au R=1SegGu-00069Q-0w P=INPUT S=21862
2012:06:13-15:37:50 utm-1 smtpd[23654]: SCANNER[23654]: id="1000" severity="info" sys="SecureMail" sub="smtp" name="email passed" srcip="10.99.1.14" from="nnn@ombudsman.qld.gov.au" to="zzz.t.triggs@tmr.qld.gov.au" subject="test message from qld ombudsman" queueid="1SegH8-00069W-7E" size="21862"
2012:06:13-15:37:50 utm-1 smtpd[23654]: SCANNER[23654]: 1SegGu-00069Q-0w => work R=SCANNER T=SCANNER
2012:06:13-15:37:50 utm-1 smtpd[23654]: SCANNER[23654]: 1SegGu-00069Q-0w Completed
2012:06:13-15:37:50 utm-1 exim-out[23656]: 2012-06-13 15:37:50 1SegH8-00069W-7E ** zzz.t.triggs@tmr.qld.gov.au P=<nnn@ombudsman.qld.gov.au> R=dnslookup T=remote_smtp: retry time not reached for any host after a long failure period
2012:06:13-15:37:50 utm-1 exim-out[23658]: 2012-06-13 15:37:50 1SegH8-00069a-18 <= <> R=1SegH8-00069W-7E U=exim P=local S=27206
2012:06:13-15:37:50 utm-1 exim-out[23656]: 2012-06-13 15:37:50 1SegH8-00069W-7E Completed
2012:06:13-15:38:00 utm-1 exim-out[23669]: 2012-06-13 15:38:00 Start queue run: pid=23669
2012:06:13-15:38:00 utm-1 exim-out[23670]: 2012-06-13 15:38:00 1SegH8-00069a-18 => nnn@ombudsman.qld.gov.au P=<> R=static_route_hostlist T=static_smtp H=10.99.1.14 [10.99.1.14]:25 C="250 2.6.0 <E1SegH8-00069a-18@mail.ombudsman.qld.gov.au> [InternalId=11227] Queued mail for delivery"
2012:06:13-15:38:00 utm-1 exim-out[23670]: 2012-06-13 15:38:00 1SegH8-00069a-18 Completed
2012:06:13-15:38:00 utm-1 exim-out[23669]: 2012-06-13 15:38:00 End queue run: pid=23669
2012:06:13-15:38:19 utm-1 smtpd[23654]: SCANNER[23654]: Nothing to do, exiting.

The email addresses end tmr.qld.gov.au and the MX records for the receiving domain are for a different domain:

mx1.transport.qld.gov.au 131.242.168.147
mx2.transport.qld.gov.au 131.242.168.148

DNS lookups on the ASG resolve OK

If anyone is able to offer any advice on how to resolve this I'd really appreciate it. In case anyone from Astaro picks this one up the case I logged was #3275036, we have platinum support and all subscriptions

Thanks a lot,

Dave.

Viewing all articles
Browse latest Browse all 14361

Trending Articles