OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Postfix-Sendmail Deferred Mail

From: EXT-Khan, Mark A (Mark.A.Khanboeing.com)
Date: Wed Nov 01 2006 - 15:42:12 CST


Hello World:
                    For those of you who have been around awhile you get
that salutation. OK on a more serious note. I have installed postfix and
it works perfectly with all mail servers except one. Unfortunately, I
need to get mail from this server. When a person tries sending me mail
we get the following errors:

Nov 1 00:16:16 lts-smtpout-01 sendmail[1656]: [ID 801593 mail.info]
k9QJAs9C018885: to=<maklancertech.com>, delay=10:05:22,
xdelay=00:03:29, mailer=esmtp, pri=1836317, relay=mail.lancertech.com.
[24.173.132.254], dsn=4.0.0, stat=Deferred: Connection timed out with
mail.lancertech.com.
Nov 1 00:20:20 lts-smtpout-01 sendmail[15327]: [ID 801593 mail.info]
k9QJAs9C018885: to=<maklancertech.com>, delay=10:09:26,
xdelay=00:03:29, mailer=esmtp, pri=1926317, relay=mail.lancertech.com.
[24.173.132.254], dsn=4.0.0, stat=Deferred: Connection timed out with
mail.lancertech.com.
Nov 1 01:11:42 lts-smtpout-01 sendmail[23894]: [ID 801593 mail.info]
k9QJAs9C018885: to=<maklancertech.com>, delay=11:00:48,
xdelay=00:03:29, mailer=esmtp, pri=2016317, relay=mail.lancertech.com.
[24.173.132.254], dsn=4.0.0, stat=Deferred: Connection timed out with
mail.lancertech.com.
Nov 1 01:16:59 lts-smtpout-01 sendmail[11033]: [ID 801593 mail.info]
k9QJAs9C018885: to=<maklancertech.com>, delay=11:06:05,
xdelay=00:03:29, mailer=esmtp, pri=2106317, relay=mail.lancertech.com.
[24.173.132.254], dsn=4.0.0, stat=Deferred: Connection timed out with
mail.lancertech.com.
Nov 1 01:59:13 lts-smtpout-01 sendmail[20196]: [ID 801593 mail.info]
k9QJAs9C018885: to=<maklancertech.com>, delay=11:48:19,
xdelay=00:03:29, mailer=esmtp, pri=2196317, relay=mail.lancertech.com.
[24.173.132.254], dsn=4.0.0, stat=Deferred: Connection timed out with
mail.lancertech.com.
Nov 1 02:39:27 lts-smtpout-01 sendmail[7694]: [ID 801593 mail.info]
k9QJAs9C018885: to=<maklancertech.com>, delay=12:28:33,
xdelay=00:03:29, mailer=esmtp, pri=2286317, relay=mail.lancertech.com.
[24.173.132.254], dsn=4.0.0, stat=Deferred: Connection timed out with
mail.lancertech.com.

Now here's the interesting part I can SEND mail to them! I just can't
receive mail from them.

Ok so I had their Admin check to see if this was a DNS problem on my end
by doing an nslookup from their email server. Here is the information
they sent back:
rootvlb-smtpout-01>nslookup
Default Server: localhost.BoobyHead.com
Address: 127.0.0.1
> set q=any
> lancertech.com
Server: localhost.BoobyHead.com
Address: 127.0.0.1
Non-authoritative answer:
lancertech.com
origin = ns1.biz.rr.com
mail addr = dnsadmin.rr.com
serial = 2003042814
refresh = 10800 (3H)
retry = 3600 (1H)
expire = 604800 (1W)
minimum ttl = 3600 (1H)
lancertech.com internet address = 24.173.132.254
lancertech.com nameserver = ns1.biz.rr.com
lancertech.com nameserver = ns2.biz.rr.com
lancertech.com nameserver = dns4.rr.com
lancertech.com preference = 10, mail exchanger = mail.lancertech.com
Authoritative answers can be found from:
lancertech.com nameserver = ns1.biz.rr.com
lancertech.com nameserver = ns2.biz.rr.com
lancertech.com nameserver = dns4.rr.com
ns1.biz.rr.com internet address = 24.30.200.19
ns2.biz.rr.com internet address = 24.30.201.19
dns4.rr.com internet address = 65.24.0.172
mail.lancertech.com internet address = 24.173.132.254

Looks good to me. As I said in the beginning I can receive mail from
anyone else except from this domain. It looks like a timing issue, but I
haven't a clue.
Finally, here is my postconf -n output:
access_map_reject_code = 554
alias_database = dbm:/etc/mail/aliases
alias_maps = dbm:/etc/mail/aliases
command_directory = /usr/sbin
config_directory = /etc/postfix
daemon_directory = /usr/libexec/postfix
debug_peer_level = 2
defer_code = 554
disable_vrfy_command = yes
header_checks = regexp:/etc/postfix/header_checks
html_directory = no
in_flow_delay = 1s
invalid_hostname_reject_code = 554
mail_owner = postfix
mailq_path = /usr/bin/mailq
manpage_directory = /usr/local/man
maps_rbl_domains = cbl.abuseat.org
maps_rbl_reject_code = 554
masquerade_domains = $mydomain
message_size_limit = 20480000
mydestination = $myhostname, localhost.$mydomain, localhost, $mydomain
mydomain = lancertech.com
myhostname = mail.lancertech.com
mynetworks = 128.29.127.0/24, 127.0.0.0/8
myorigin = $mydomain
newaliases_path = /usr/bin/newaliases
non_fqdn_reject_code = 554
queue_directory = /var/spool/postfix
readme_directory = no
reject_code = 554
relay_domains =
relay_domains_reject_code = 554
relayhost =
sample_directory = /etc/postfix
sendmail_path = /usr/lib/sendmail
setgid_group = postdrop
show_user_unknown_table_name = no
smtpd_client_restrictions = reject_unknown_client,
reject_rbl_client relays.ordb.org
smtpd_data_restrictions = reject_unauth_pipelining,
reject_multi_recipient_bounce, permit
smtpd_delay_reject = yes
smtpd_error_sleep_time = 10
smtpd_etrn_restrictions = permit_mynetworks, reject
smtpd_hard_error_limit = 5
smtpd_helo_required = yes
smtpd_helo_restrictions = permit_mynetworks,
reject_non_fqdn_hostname, reject_invalid_hostname,
reject_unknown_hostname, check_helo_access
dbm:/etc/postfix/helo_access
smtpd_junk_command_limit = 3
smtpd_recipient_restrictions = reject_non_fqdn_sender,
reject_non_fqdn_recipient, reject_unknown_sender_domain,
reject_unknown_recipient_domain, permit_mynetworks,
reject_unauth_destination, reject_multi_recipient_bounce,
reject_non_fqdn_hostname, reject_invalid_hostname,
reject_unknown_client, reject_unknown_hostname,
reject_unauth_pipelining, reject_rhsbl_sender
dsn.rfc-ignorant.org reject_rhsbl_sender
bogusmx.rfc-ignorant.org, reject_rbl_client bl.spamcop.net,
reject_rbl_client sbl-xbl.spamhaus.org, reject_rbl_client
dnsbl.sorbs.net, reject_rbl_client list.dsbl.org,
reject_rbl_client relays.ordb.org, permit
smtpd_sender_restrictions = permit_mynetworks, check_sender_access
dbm:/etc/postfix/access, reject_non_fqdn_sender,
reject_unknown_sender_domain, reject_unknown_address
smtpd_soft_error_limit = 2
strict_rfc821_envelopes = yes
unknown_address_reject_code = 554
unknown_client_reject_code = 554
unknown_hostname_reject_code = 554
unknown_local_recipient_reject_code = 554
unknown_relay_recipient_reject_code = 554
unknown_virtual_alias_reject_code = 554
unknown_virtual_mailbox_reject_code = 554
Any and all help will be greatly appreciated.
Regards - Mark K.