OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: "reject_unknown_reverse_client_hostname" bouncing mail when name server is down

From: Tony Earnshaw (tericssonearnshawbarlaeus.nl)
Date: Thu Aug 24 2006 - 00:48:12 CDT


on den 23.08.2006 Klokka 19:47 (-0500) skreiv Jordan Russell:

> (Postfix 2.3.2, Red Hat Enterprise Linux 4)
>
> In Postfix I'm using:
>
> smtpd_recipient_restrictions = .. reject_unknown_reverse_client_hostname
> unknown_client_reject_code = 554
>
> BIND runs on the same machine. /etc/resolv.conf is set as follows:
>
> nameserver 127.0.0.1
>
> I have found that when I stop the "named" daemon, all incoming mail is
> rejected with:
>
> 554 5.7.1 Client host rejected: cannot find your reverse hostname

In addition to what Wietse wrote, enter a fallback nameserver (i.e. your
ISP's nameserver) below localhost in /etc/resolv.conf. We run the same
OS as you and it works for us (we run a split caching nameserver on our
mail server).

You could also try to see to it that your local nameserver does not fall
out for extended periods (yes, I know up2date can ruin custom settings,
been there, seen that, but make a backup of /var/named before you run
up2date).

> Yet the manual states:
>
> "The reply is always 450 in case the address->name lookup failed due to
> a temporary problem."
>
> Does an unreachable name server not count as a "temporary problem"?
>
> Thanks,
> Jordan Russell

--Tonni

--
Tony Earnshaw
reservebergenser :)