1 (edited by christian.lugo 2014-05-07 06:19:55)

Topic: External Communication

==== Required information ====
- iRedMail version: iRedMail-0.8.6
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP
- Linux/BSD distribution name and version: Ubuntu 12.04 LTS
- Related log if you're reporting an issue:
====

Hi, I'm new and novice user in iRedMail, I just installed "iRedadmin" on my Ubuntu Server 12.04 LTS, I have a domain registered with godaddy.com, my data are:

https://ubuntupower.net

* MX, A, TXT records on godaddy.com:

A (host)
@    201.227.104.52    1 Hora   

MX (Mail Exchanger)
10    @    mailstore1.secureserver.net    1 Hora   
10    @    server.ubuntupower.net    1 Hora   
0    @    smtp.secureserver.net    1 Hora   
10    @    smtp.ubuntupower.net    1 Hora   

TXT (Text)
@    v=spf1 ip4:201.227.104.52 -all    1 Hora   

-my local hostname is server.ubuntupower.net
-10 Priority
-@ Host
-201.227.104.52 is my public IP

* I open ports 22,25,80,110,143,443,465,587,993,995 on my firewall/DSL Módem because I read in another post that was to do
* I have created an email account in iRedAdmin -> christian _at_ ubuntupower dot net

¡But! I can't send or receive e-mails externally, I don't understand where's my problem, please help me

----

Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.

2

Re: External Communication

christian.lugo wrote:

But! I can't send or receive e-mails externally, I don't understand where's my problem, please help me

Obviously, you want to use '201.227.104.52' as mail server, but your MX records are wrong.

MX (Mail Exchanger)
10    @    mailstore1.secureserver.net    1 Hora   
10    @    server.ubuntupower.net    1 Hora   
0    @    smtp.secureserver.net    1 Hora   
10    @    smtp.ubuntupower.net    1 Hora

Other servers will send emails to smtp.secureserver.net (smaller number has higher priority). If smtp.secureserver.net is down (cannot reach on port 25), other servers will randomly pick up one of rest 3 servers for mail delivery, because they have same number (10), so they has the same priority.

3

Re: External Communication

ZhangHuangbin wrote:
christian.lugo wrote:

But! I can't send or receive e-mails externally, I don't understand where's my problem, please help me

Obviously, you want to use '201.227.104.52' as mail server, but your MX records are wrong.

MX (Mail Exchanger)
10    @    mailstore1.secureserver.net    1 Hora   
10    @    server.ubuntupower.net    1 Hora   
0    @    smtp.secureserver.net    1 Hora   
10    @    smtp.ubuntupower.net    1 Hora

Other servers will send emails to smtp.secureserver.net (smaller number has higher priority). If smtp.secureserver.net is down (cannot reach on port 25), other servers will randomly pick up one of rest 3 servers for mail delivery, because they have same number (10), so they has the same priority.

Right! Sorry
At this time I will change this record

0    @    server.ubuntupower.net    1 Hora   

Now, it's the only MX record. I'll wait to that "godaddy" can refresh the changes and then I will send you a reply, thank you so very much, and sorry for the inconvenience

regards

4

Re: External Communication

ZhangHuangbin wrote:
christian.lugo wrote:

But! I can't send or receive e-mails externally, I don't understand where's my problem, please help me

Obviously, you want to use '201.227.104.52' as mail server, but your MX records are wrong.

MX (Mail Exchanger)
10    @    mailstore1.secureserver.net    1 Hora   
10    @    server.ubuntupower.net    1 Hora   
0    @    smtp.secureserver.net    1 Hora   
10    @    smtp.ubuntupower.net    1 Hora

Other servers will send emails to smtp.secureserver.net (smaller number has higher priority). If smtp.secureserver.net is down (cannot reach on port 25), other servers will randomly pick up one of rest 3 servers for mail delivery, because they have same number (10), so they has the same priority.

Hi Sir

I want to thank you very much the support about configuring DNS with godaddy, now smile I can receive from outside (I have done tests with me.com, icloud, gmail) but hmm I can't send out mails to outside sad

sorry for the inconvenience again, but, you can help me with this, please?

regards


Attached the new config in godaddy

A (Host)
Host       Apunta A      TTL
@       50.63.202.5      1 Hora   
@       201.227.104.52 1 Hora   
server  201.227.104.52 1 Hora   

CNAME (Alias)
Host            Apunta A                            TTL   
calendar    login.secureserver.net    1 Hora   
email            email.secureserver.net    1 Hora   
fax            login.secureserver.net    1 Hora   
files            login.secureserver.net    1 Hora   
ftp            @                                    1 Hora   
imap            imap.secureserver.net    1 Hora   
mail            pop.secureserver.net            1 Hora   
mobilemail    mobilemail-v01.prod.mesa1.secureserver.net    1 Hora   
pop            pop.secureserver.net            1 Hora   
smtp            smtp.secureserver.net    1 Hora   
www            @                                    1 Hora   

MX (Mail Exchanger)
Prioridad    Host     Apunta A                            TTL
0            @     server.ubuntupower.net    1 Hora   

TXT (Texto)
Host    Valor de TXT                            TTL
@    v=spf1 ip4:201.227.104.52 -all    1 Hora   

NS (Servidor de Nombres)
Host                    Apunta A                                            TTL
@ (Informativo)    ns13.domaincontrol.com (Informativo)    1 Hora (Informativo)   
@ (Informativo)    ns14.domaincontrol.com (Informativo)    1 Hora (Informativo)

5

Re: External Communication

christian.lugo wrote:

I can't send out mails to outside sad

Maybe caused by greylisting. Does email arrive if you wait for some minutes? If not, any bounce message in the sender mailbox?

6

Re: External Communication

ZhangHuangbin wrote:
christian.lugo wrote:

I can't send out mails to outside sad

Maybe caused by greylisting. Does email arrive if you wait for some minutes? If not, any bounce message in the sender mailbox?

Oh man, I'm very confused, I don't understand what happened, but having received 5 mails successfully, I can't more! sad the error message is next:

********************************************************************************************************
Your message cannot be delivered to the following recipients:
Recipient address: christian@ubuntupower.net

Reason: Remote SMTP server has rejected address
Diagnostic code: smtp;554 5.7.1 <christian@ubuntupower.net>: Recipient address rejected: Invalid HELO/EHLO; HRP limit exceeded
Remote system: dns;server.ubuntupower.net (TCP|17.172.124.249|59000|201.227.104.52|25) (server.ubuntupower.net ESMTP Postfix [Ubuntu])
********************************************************************************************************

I reviewed in http://mxtoolbox.com for some problem, but, the results are positive ... I don't understand

After 20 minutes, I tried to send another mail from icloud.com but the error message is the same

7

Re: External Communication

christian.lugo wrote:

Diagnostic code: smtp;554 5.7.1 <christian@ubuntupower.net>: Recipient address rejected: Invalid HELO/EHLO; HRP limit exceeded

Please login to your MySQL server, you can find one (and only one) record in SQL table "cluebringer.checkhelo", please either delete it and set it's value of column 'disabled' to 1.

8

Re: External Communication

ZhangHuangbin wrote:
christian.lugo wrote:

Diagnostic code: smtp;554 5.7.1 <christian@ubuntupower.net>: Recipient address rejected: Invalid HELO/EHLO; HRP limit exceeded

Please login to your MySQL server, you can find one (and only one) record in SQL table "cluebringer.checkhelo", please either delete it and set it's value of column 'disabled' to 1.

wow, Sir, you are THE one and only! THANK YOU VERY MUCH!

smile Finally I can receive external mails (from iCloud, Gmail, Outlook, etc...), but, I still can't receive external mails sad help me please...

9

Re: External Communication

christian.lugo wrote:

Finally I can receive external mails (from iCloud, Gmail, Outlook, etc...), but, I still can't receive external mails sad

Do you understand what you're talking about?

10

Re: External Communication

ZhangHuangbin wrote:
christian.lugo wrote:

Finally I can receive external mails (from iCloud, Gmail, Outlook, etc...), but, I still can't receive external mails sad

Do you understand what you're talking about?


sorry. I meant:

I can receive mails from outside (from iCloud, Gmail, Outlook, etc...), but, I still can't send external mails

11

Re: External Communication

Cannot sent to external mail servers like Gmail/Hotmail? Any related log in your mail client application (Outlook, Thunderbird)? And any related log in Postfix log file on your server (/var/log/mail.log)?

12 (edited by christian.lugo 2014-05-12 23:51:51)

Re: External Communication

ZhangHuangbin wrote:

Cannot sent to external mail servers like Gmail/Hotmail? Any related log in your mail client application (Outlook, Thunderbird)? And any related log in Postfix log file on your server (/var/log/mail.log)?

I cannot send to any external mail server, after some time I receive emails with different error:

*********************************************************************************
El 2014-05-12 07:02, MAILER-DAEMON@server.ubuntupower.net escribió:

This is the mail system at host server.ubuntupower.net.

I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.

For further assistance, please send mail to postmaster.

If you do so, please include this problem report. You can
delete your own text from the attached returned message.

                   The mail system

<christian.lugo@me.com>: connect to mx1.me.com.akadns.net[17.172.34.10]:25:
    Connection timed out

Reporting-MTA: dns; server.ubuntupower.net
X-Postfix-Queue-ID: 7D4504803DD
X-Postfix-Sender: rfc822; christian@ubuntupower.net
Arrival-Date: Mon, 12 May 2014 01:50:37 -0500 (EST)

Final-Recipient: rfc822; christian.lugo@me.com
Original-Recipient: rfc822;christian.lugo@me.com
Action: failed
Status: 4.4.1
Diagnostic-Code: X-Postfix; connect to mx1.me.com.akadns.net[17.172.34.10]:25:
    Connection timed out

(Gmail)
Diagnostic-Code: X-Postfix; connect to
    alt4.gmail-smtp-in.l.google.com[74.125.143.27]:25: Connection timed out

(Hotmail)
Diagnostic-Code: X-Postfix; connect to mx3.hotmail.com[65.55.37.88]:25:
    Connection timed out

(iCloud/Me)
Diagnostic-Code: X-Postfix; connect to mx5.me.com.akadns.net[17.172.34.69]:25:
    Connection timed out

*********************************************************************************

I Attached the log file, Thanks a lot for your support

13

Re: External Communication

christian.lugo wrote:

<christian.lugo@me.com>: connect to mx1.me.com.akadns.net[17.172.34.10]:25:
    Connection timed out

All SMTP connections timed out.

You must check firewall/router to make sure they don't block port 25, also, ask your ISP to check whether they block port 25 too.

14

Re: External Communication

ZhangHuangbin wrote:
christian.lugo wrote:

<christian.lugo@me.com>: connect to mx1.me.com.akadns.net[17.172.34.10]:25:
    Connection timed out

All SMTP connections timed out.

You must check firewall/router to make sure they don't block port 25, also, ask your ISP to check whether they block port 25 too.

My ISP says they port 25 is NOT blocking, I check my firewall/módem and the port is open, finally I made a test from portchecktool, and the port is open, I don't understand,

GoDaddy have this records in CNAME (Alias) maybe here is the problem
* my server is ubuntupower.net, i don't know 'secureserver.net'

-----------------------------------------------------------------------------------------------------------
CName (Alias)
11 Records (0 Selected)
Host              Points To                      TTL   

calendar      login.secureserver.net     1 Hour   
email              email.secureserver.net     1 Hour   
fax              login.secureserver.net     1 Hour   
files              login.secureserver.net     1 Hour   
ftp              @                                     1 Hour   
imap              imap.secureserver.net     1 Hour   
mail              pop.secureserver.net     1 Hour   
mobilemail      mobilemail-v01.prod.mesa 1.secureserver.net    1 Hour   
pop              pop.secureserver.net     1 Hour   
smtp              smtp.secureserver.net     1 Hour   
www              @                                     1 Hour   

-----------------------------------------------------------------------------------------------------------

Attached image of portchecktool

15

Re: External Communication

I cannot reach your port 25:

# On one of my VPS in Japan
# telnet 201.227.104.52 25
Trying 201.227.104.52...
telnet: connect to address 201.227.104.52: No route to host

# On another VPS in USA
# telnet 201.227.104.52 25
Trying 201.227.104.52...
telnet: connect to address 201.227.104.52: Connection refused

# On my laptop (China mainland)
$ telnet 201.227.104.52 25
Trying 201.227.104.52...
telnet: connect to address 201.227.104.52: Operation timed out
telnet: Unable to connect to remote host

16

Re: External Communication

ZhangHuangbin wrote:

I cannot reach your port 25:

# On one of my VPS in Japan
# telnet 201.227.104.52 25
Trying 201.227.104.52...
telnet: connect to address 201.227.104.52: No route to host

# On another VPS in USA
# telnet 201.227.104.52 25
Trying 201.227.104.52...
telnet: connect to address 201.227.104.52: Connection refused

# On my laptop (China mainland)
$ telnet 201.227.104.52 25
Trying 201.227.104.52...
telnet: connect to address 201.227.104.52: Operation timed out
telnet: Unable to connect to remote host

Please excuse me, I had to leave the city and found the server off, at this time I got it online

17

Re: External Communication

I can reach port 25 now.

*) Do you still have this issue? Still "Connection timed out" while connecting to port 25?
*) Do you have correct route IP address set on your server? Check it with command 'route -n'.
*) Check firewall on your server again with command "iptables -L -n".
*) Check firewall rules on your network firewall/routers again, make sure they don't block port 25.

18

Re: External Communication

ZhangHuangbin wrote:

I can reach port 25 now.

*) Do you still have this issue? Still "Connection timed out" while connecting to port 25?
*) Do you have correct route IP address set on your server? Check it with command 'route -n'.
*) Check firewall on your server again with command "iptables -L -n".
*) Check firewall rules on your network firewall/routers again, make sure they don't block port 25.


Hello Sir,

I still have the same situation, annex the results, registers, and error mail

Thank you very much for your help

19

Re: External Communication

Can you telnet to the server address mentioned in the bounce email? For example:

$ telnet 17.172.34.12 25

20

Re: External Communication

ZhangHuangbin wrote:

Can you telnet to the server address mentioned in the bounce email? For example:

$ telnet 17.172.34.12 25

I can't, only to my server

21

Re: External Communication

It must be something wrong due to your network related settings or restrictions. Please ask support from your network administrator.

22

Re: External Communication

ZhangHuangbin wrote:

It must be something wrong due to your network related settings or restrictions. Please ask support from your network administrator.

Hello Sir, after change my ISP the problem with communication has dissapeared, Thanks a lot for all support. you are right, the problem was with out port

Thanks again! Now, all is ok