1

Topic: mails not receiving

Hi

I have a specific problem where I am not receiving some mails from a domain. All mails having attachment having more than 900 KB are not received by us. We are receiving plan messages from that specific domain.
I am attaching the mail log for the reference. Please help me .

Jan  3 16:07:16 mailadmin postfix/smtpd[10593]: 31DF31710269: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:07:18 mailadmin postfix/qmgr[3163]: E8952171026F: from=<ksbalaji@irevna.com>, size=100900, nrcpt=2 (queue active)
Jan  3 16:07:18 mailadmin amavis[22775]: (22775-04) Passed CLEAN, LOCAL [59.160.151.142] [152.64.168.155] <ksbalaji@irevna.com> -> <piyush.gupta@pipalresearch
.com>,<saurabh.jain@pipalresearch.com>, Message-ID: <84AA0FB7DF469343B5641F748E65CA5F6744AEA6F1@MBMMSGCLS03.irevnaint.com>, mail_id: sTtmbaFi6ubl, Hits: -0.07
2, size: 100461, queued_as: E8952171026F, 3855 ms
Jan  3 16:07:18 mailadmin postfix-policyd: rcpt=27064, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:10:39 mailadmin postfix/smtpd[22765]: timeout after DATA (455479 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:10:39 mailadmin postfix/smtpd[22765]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:11:08 mailadmin postfix/smtpd[22765]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:11:08 mailadmin postfix-policyd: rcpt=27079, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=saurabh.jai
n@pipalresearch.com, size=0
Jan  3 16:11:08 mailadmin postfix/smtpd[22765]: ADA7A17101AD: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:11:11 mailadmin postfix-policyd: rcpt=27080, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:12:39 mailadmin postfix/smtpd[20674]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:12:40 mailadmin postfix/smtpd[10593]: timeout after DATA (1212003 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:12:40 mailadmin postfix/smtpd[10593]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:12:40 mailadmin postfix-policyd: rcpt=27083, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:12:40 mailadmin postfix/smtpd[20674]: C5FCD1710269: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:12:42 mailadmin postfix/qmgr[3163]: C5FCD1710269: from=<ksbalaji@irevna.com>, size=53137, nrcpt=1 (queue active)
Jan  3 16:12:44 mailadmin postfix-policyd: rcpt=27084, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=saurabh.jai
n@pipalresearch.com, size=0
Jan  3 16:12:44 mailadmin postfix/smtpd[20674]: 2531B171026F: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:12:46 mailadmin postfix-policyd: rcpt=27085, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:12:47 mailadmin postfix/qmgr[3163]: A3FB21710272: from=<ksbalaji@irevna.com>, size=53652, nrcpt=1 (queue active)
Jan  3 16:12:47 mailadmin amavis[22775]: (22775-15) Passed CLEAN, LOCAL [59.160.151.142] [152.64.168.155] <ksbalaji@irevna.com> -> <piyush.gupta@pipalresearch
.com>, Message-ID: <84AA0FB7DF469343B5641F748E65CA5F6744AEA6F7@MBMMSGCLS03.irevnaint.com>, mail_id: 7lKIMx7mO5W3, Hits: 0.428, size: 53137, queued_as: A3FB217
10272, 5815 ms
Jan  3 16:15:10 mailadmin postfix/smtpd[20742]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:15:10 mailadmin postfix-policyd: rcpt=27098, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=rajendrank@irevna.com, to=gaurav.du
a@pipalresearch.com, size=0
Jan  3 16:15:10 mailadmin postfix/smtpd[20742]: D3A281710266: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:16:25 mailadmin postfix/smtpd[22765]: timeout after DATA (826220 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:16:25 mailadmin postfix/smtpd[22765]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:18:22 mailadmin postfix/smtpd[20674]: timeout after DATA (1506135 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:18:22 mailadmin postfix/smtpd[20674]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:18:55 mailadmin postfix/smtpd[20674]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:18:56 mailadmin postfix-policyd: rcpt=27112, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=aamalajetty@irevna.com, to=gaurav.d
ua@pipalresearch.com, size=0
Jan  3 16:18:56 mailadmin postfix/smtpd[20674]: 184F217101BB: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:20:13 mailadmin postfix/smtpd[20742]: timeout after DATA (168236 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:20:13 mailadmin postfix/smtpd[20742]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:20:22 mailadmin postfix/smtpd[4247]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:20:22 mailadmin postfix-policyd: rcpt=27121, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:20:22 mailadmin postfix/smtpd[4247]: DCE501710269: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:20:24 mailadmin postfix-policyd: rcpt=27122, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=saurabh.jai
n@pipalresearch.com, size=0
Jan  3 16:22:43 mailadmin postfix/smtpd[5675]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:22:43 mailadmin postfix-policyd: rcpt=27129, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:22:43 mailadmin postfix/smtpd[5675]: B68BE171025C: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:22:45 mailadmin postfix-policyd: rcpt=27131, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=saurabh.jai
n@pipalresearch.com, size=0
Jan  3 16:23:57 mailadmin postfix/smtpd[20674]: timeout after DATA (136729 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:23:57 mailadmin postfix/smtpd[20674]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:25:36 mailadmin postfix/smtpd[4247]: timeout after DATA (337884 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:25:36 mailadmin postfix/smtpd[4247]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:27:57 mailadmin postfix/smtpd[5675]: timeout after DATA (347455 bytes) from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:27:57 mailadmin postfix/smtpd[5675]: disconnect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:30:27 mailadmin postfix/smtpd[17589]: connect from viruswall3.irevna.com[59.160.151.142]
Jan  3 16:30:28 mailadmin postfix-policyd: rcpt=27162, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=piyush.gupt
a@pipalresearch.com, size=0
Jan  3 16:30:28 mailadmin postfix/smtpd[17589]: 0C37317101BB: client=viruswall3.irevna.com[59.160.151.142]
Jan  3 16:30:30 mailadmin postfix-policyd: rcpt=27164, whitelist=update, host=59.160.151.142 (viruswall3.irevna.com), from=ksbalaji@irevna.com, to=saurabh.jai
n@pipalresearch.com, size=0

----

Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.

2

Re: mails not receiving

I just see logs like "timeout after DATA (455479 bytes) from viruswall3.irevna.com", it chould be a network related issue.

And you didn't post full log related to a SMTP session, it's hard to see what the root cause is.

Is it possible to contact postmaster of "irevna.com" to work together for this issue?

3

Re: mails not receiving

Hi

I got this message from symantec people who look our client mail
pipalresearch.com are are taking too long time scanning email attachments from you because they are using smtp filtering for your domain or they are using traffic shaping and your domain has a low confidence level causing delays in scanning. 421 and 450 means that the recipient domain is not accepting mails from you, not the other way around.

can we stop smtp filtering for irevna.com.

thanks
Philip

4

Re: mails not receiving

Great feedback, it helps.

Try to add "check_client_access" in postfix "smtpd_recipient_restrictions =":

smtpd_recipient_restrictions =
    ...
    check_client_access hash:/etc/postfix/client_access
    check_policy_service inet:127.0.0.1:10031

And create /etc/postfix/client_access with below content:

domain.ltd OK

Run postmap to create hash db, restart postfix to make it work:

# postmap hash:/etc/postfix/client_access
# /etc/init.d/postfix restart