DNS, Firewalls, Mail -- Help!

Have a slightly odd setup I can't get to work, wondering if anyone can point me in the right direction.
Have a local network behind a firewall, and one of these machines is a 10.4 Server that acts as an SMTP server. Its configured and works fine for most things....however...
We have several machines behind this firewall, so we have a local DNS server to translate for people who are behind it. We have a website for one of our domains, lets call it fred.com, behind this firewall. The website is not on the same box as the SMTP server.
However, we also have external users who have email addresses that are @fred.com. They use our SMTP server to send their mail, and they connect to an external service to retrieve their mail (long story). That is called pop.fred.com, but again, its outside our local network.
Problem is this -- if a @fred.com user tries to send an email, it works fine unless the user they are sending to is another @fred.com user. Then the email never arrives.
I have our local DNS set up so that the MX record for @fred.com is pointing to the IP address of the external pop server (the same domain that the DNS for the outside world is setup for). The mail.log on the server shows the following:
Aug 7 11:45:20 www postfix/smtp[14474]: 603F5B2DB36: to=<[email protected]>, relay=fred.com[216.126.205.10], delay=1974, status=deferred (host fred.com[216.126.205.10] said: 450 4.7.1 <smtpserver>: Helo command rejected: Host not found (in reply to RCPT TO command))
And after a few days, it'll give up trying. But it works fine if they are trying to send to a [email protected] user. On those messages that work, the relay comes in as localhost.
IF I remove the MX record from the local DNS, I get an outright rejection (of course):
Aug 7 07:51:32 www postfix/smtp[22227]: 8B1CDB2D378: to=<[email protected]>, relay=none, delay=0, status=bounced (Host or domain name not found. Name service error for name=fred.com type=A: Host found but no data record of requested type)
So I've obviously messed up the DNS in some fashion. Anybody have any pointers in how to make this work?
For what its worth, this SMTP server used to be outside our local network -obviously these problems started after we moved it inside.
Any help/pointers are appreciated.
Chris

Wow.. I am a little blown away with all the questions but lets take a direct approach..
1) If you ping an IP address external to your network, does it return..
For instance, here is the IP for google in my part of the country.
host www.goggle.com
www.goggle.com has address 64.182.91.91
2) I presume you can ping clients on your local network but lets just make sure..
3) What does your /etc/resolv.conf contain??
4) Is named running on your server??
For example:
$ ps ax | grep name
42 ?? Ss 2:25.18 /usr/sbin/named -f
93036 s000 R+ 0:00.00 grep name
Lets start there...

Similar Messages

  • Multiple Email Accounts Don't Seem Possible. Yet Mail Help Says It is!

    Hi,
    If you go to the Mail help menu and type in "multiple", the result shows that you can enter multiple email address into an account during setup, separated by commas. Great if you have several emails under the same domain ([email protected], [email protected], etc.)
    The problem is this - the User Name is the full email address, so although I can enter my four email addresses under one domain, I cannot enter them as four separate user names, only one will work.
    Am I missing something here? It's got me confused!
    Thanks for any replies.
    Hugh

    Using an IMAP e-mail where you have several email addresses say ,...... @mac.com, ,[email protected] and [email protected] all pointing at the same server inbox yes you can use the comma separation method.
    Emails sent to any of those addresses arrive on your computer altogether as YOU have just ONE user name !
    If however you have differing POP and/or IMAP accounts each with differing user names POP inboxes and even SMTP sending systems you will have to set up each email account one by one.
    Mail will allow you to have them combined into a single inbox on your computer.
    You will also notice a triangle appears to the left of the inbox ,click on this and you will be presented with individual account inboxes within the main inbox

  • Keep being asked for password: Mail Help unhelpful

    Last week I had to trash my keychains/passwords on the recommendation of Skype help. It solved my immediate problem but now I get asked for a password every time I launch Mail.
    I've tried Mail help and got the following advice:
    "To change the keychain lock settings:
    Open Keychain Access, located in Applications/Utilities (or click the link provided on this page).
    Select your login keychain, choose Edit > "Change Settings for Keychain 'login'."
    To reduce the number of requests for your keychain password, deselect the option for the number of minutes of inactivity before the keychain is locked, or increase the number of minutes. You can also deselect "Lock when sleeping" option."
    Trouble is, I see nothing that resembles a "login keychain".
    Is the above the advice I need. If yes, what/where is my login keychain; if no, what now?

    Thanks for the feedback. This means the login keychain itself was "there", just inaccessible for some reason. The actual keychains are stored in one of the following locations, depending on their applicability:
    /System/Library/Keychains/
    /Library/Keychains/
    ~/Library/Keychains/
    login, in particular, being different for each user, is stored in ~/Library/Keychains/.
    On my system, the System keychain is stored in /Library/Keychains/. Do you see a System keychain in more than one of the aforementioned locations? Maybe that's the reason you see more than one instance of it in Keychain Access.
    I'm wondering now if the problem was just that there was something wrong with the ~/Library/Preferences/com.apple.keychainaccess.plist preferences file. Guess we'll never know what happened here.
    Note: For those not familiarized with the ~/ notation, it refers to the user's home folder. You can easily locate any of the folders referred to in this post by copying the file path here, doing Go > Go to Folder in the Finder, and pasting the file path there.

  • I switched to Apple Mail in the last two months.  When I attempt to print an email message, I get a blank piece of paper.  When I attempt to use the print options suggested in "Mail Help", the program crashes and has to be reopened.  Any ideas?

    I switched to Apple Mail in the last two months.  When I attempt to print an email message, I get a blank piece of paper.  When I attempt to use the print options suggested in "Mail Help", the program crashes and has to be reopened.  Any ideas?

    Which version of Mail are you using as well as which Snow Leopard version you are using? 

  • DMZ - DNS Server, Mail Server, Web Server, FTP Server

    Hi,
    I am looking at a router to support around 20-30 people. I have a DNS Server, Mail Server, Web Server, FTP Server (all on one box (PC). I was wondering how everyones experiences with DMZ and port forwarding have been with these protocols with Airport and supporting a group of this size? Do you forsee issues? Will the new Airport handle these requirements better?
    Thanks

    A record for mail.mydomain.com going for ip 199.99.99.999
    MX record for mail.mydomain.com with destionation as mail.mydomain.com
    That doesn't quite make sense. There must be an A record for "server.mydomain.com" or you wouldn't be able to reach it at all. You want the MX record to point to that.

  • New mail button does not respond so can't write mail. help please?

    New mail button does not respond so can't write mail. help please?

    I am no expert, but open your mail, go to the top of your apple bar click the apple sign then force quit mail, restart and it may work.
    I had this issue before and it was resolved.

  • My Iphone 4s ios 8.1.3 and has been upgraded to 8.2 cant login with the correct password, it is correct on pc but is read wrong in the device. also mail. help me please

    My Iphone 4s ios 8.1.3 and has been upgraded to 8.2 cant login with the correct password, it is correct on pc but is read wrong in the device. also mail. help me please

    Hi Eslam El-Gammal,
    Welcome to the Apple Support Communities!
    I understand that after resetting your iPhone, you are being prompted for Apple ID information that is not yours. This can happen if an iPhone is restored without turning off the Find My Phone feature. For more information on this, please refer to the attached article. 
    Find My iPhone Activation Lock - Apple Support
    Best regards,
    Joe

  • Leopard Mail Help gives Tiger answers?.

    After installing Leopard (twice) I get answers from Mail Help that refer to Tiger. My original problem was "cannot throw away old files from inbox." I have several hundred emails that won't delete and cannot figure out why after Leopard installation I should still get Help with 10.4 answers.
    Any thoughts out there?
    Thanks, Marv.

    Thanks Ernie, you answered part of a question I had about mail files I couldn't trash. Your suggestion about using "cut" worked for me.
    Marv

  • Can't access Mail Help

    looking for help on a number of issues and trying to find some by searching, of all things, the help file...each time I try, whether typing a pertinent term or clicking on one of the links offerecd on the mail help home screen, it consistently says, in effect, "try a different spelling:
    ideas?
    i'm trying to figure out why multiple emails have been downloaded a second time, and how to actually delete accounts I already deleted a long time ago. the reason I know they still exist, is that connection doctor keeps looking for them every time I run it

    Had to change security settings.

  • No Mail Help?

    When I go to Help > Mail Help when in the Mac Mail program, I just get a popup saying "Help isn’t available for Mail." Seriously? Mac Mail has no Help whatsoever? (My OS is 10.9.4 (Mavericks).)

    Sometimes just closing and reopening the Help window will clear up the problem. If it doesn't, log out or restart the computer and try again. Otherwise, you may need to delete the Help cache.
    Back up all data before proceeding.
    Triple-click anywhere in the line below on this page to select it:
    ~/Library/Caches/com.apple.helpd
    Right-click or control-click the highlighted line and select
              Services ▹ Reveal
    from the contextual menu.* A Finder window should open with a folder selected. Move the selected folder to the Trash. Log out, log back in, and test. Help pages will be slow to load at first.
    If that doesn't work, the problem may be caused by network conditions. It may go away by itself, though I can't say how long you should wait.
    A persistent failure to load help data has been reported as an issue with satellite networks. Test on a different network, if possible. I've also seen at least one report that Photo Stream in iCloud can mysteriously interfere with Help. I'm not sure whether that's true, but try disabling Photo Stream, if applicable.
    *If you don't see the contextual menu item, copy the selected text to the Clipboard by pressing the key combinationcommand-C. In the Finder, select
              Go ▹ Go to Folder...
    from the menu bar and paste into the box that opens by pressing command-V. You won't see what you pasted because a line break is included. Press return.

  • Safari, Mail, Help crashes since 10.4.11

    Hello!
    Since i update to 10.4.11 some applications crashes when i try to start them with the "unexpected quit" message (Safari, Mail, Help-Viewer, Software-Update)
    I did not use any hacks, i also look in the libery but there is no PicLens and no other Plug-In.
    When i try to load the 10.4.10 Combo Updater the system crash again with the "unexpected quit" message.
    I use the Disk-Utility to repair the hard disk but it doesn´t help.
    I have no other Idea! Can you help me please?
    Basti

    Bastian,
    After your backup I would recommend that you download and attempt to reapply the Mac OS X 10.4.11 Combo Update (PPC).
    Very often a Combo Update will be successful when an incremental Software Update has not been successful.
    ;~)

  • Domain name/"primary DNS" name/mail host name/mail server name/mx name

    Hi,
    I have registered my domain name (N.com) with an external dns server and created an MX record (mail.N.com) for it as well. My server sits behind a router and internet traffic is port(80)-forwarded to my server's fixed internal ip address (I can access my webpages from the internet just fine). When I initially setup the server I was asked to give it a "primary DNS name." I naturally assumed that N.com was supposed to be entered here, but that just caused all kinds of problems (though I still do not understand why). So I reinstalled and currently have server.N.com as the primary DNS name of the server (although it shows up in Server Admin and Workgroup Manager as server.local--why is that?)
    I have had no luck getting any email from the internet with the default settings in mail services (domain name of N.com and host name of server.N.com). Having no luck with the defaults, I assumed that maybe I needed to change the host name to "mail.N.com" so that it matched the MX record. I also changed the user preferences in Workgroup Manager to receive mail from mail.N.com--but still no luck. Could someone tell me what I am doing wrong and how come none of the Mail Service literature mentions anything about what a mail "host name" is supposed to be? Is it supposed to be the same as the "Mail Server" name that Workgroup Manager asks each user for? and is it the same as the MX record name?
    I am just needing some help to connect all these variously named, but undefined, dots.
    Also, how come I can access webmail from the internet using www.N.com/webmail but can't do it from any computers within my physical network (I have to use IPaddress/webmail or server.local/webmail)?
    Also, should my user email addresses be [email protected] or [email protected] (which is the current default)?
    Thanks in advance and good luck!
    John

    I had been told by a friend that ... regular email coming in from the internet would go through port 80
    Unfortunately you were misinformed.
    My MX record needs the extra subname (such as "mail") in front of the domain name, right?
    Not at all. A MX record for 'N.com' is entirely valid (expected, in fact).
    An MX record tells remote mail servers where to send mail for any domain/subdomain. If you think about it, let's say you worked for Apple and you wanted people to be able to send email to [email protected], well then you need an MX record for 'apple.com'.
    You can see if you dig MX apple.com that they actually have 9 MX records, but the point still stands.
    Now, you might also have MX records for subdomains so that you can have [email protected], [email protected], [email protected], etc. Each of these subdomains would need a separate MX record.
    So, in general, for any set of email addresses @[anything.]domain.com you have a MX record telling remote mail servers where to send that mail.
    Of course the MX record name is mail.N.com, but I think you are implying that the in the Mail settings of Server Admin where it asks for domain name all I need to put there is the N.com, right?
    What I mean is that you need to set the domain name to whatever domain name you expect to receive mail at.
    If you want users to have email addresses in the form of [email protected], then you enter 'N.com'.
    If you want users to have email addresses in the form of [email protected] then you enter 'mail.N.com'.
    If you want both forms, enter one in the main domain and add the other(s) in the Advanced -> Hosting -> Local Host Aliases section.
    Is there anything in the Mail settings that needs to have the full MX record name (mail.N.com)?
    Yes. Either the 'domain name' or the 'Local Host Aliases' needs to contain the same thing as your MX record. That's because the MX record tells remote servers to send mail to this machine, but the machine won't accept the mail unless it is configured to do so.
    What is the "host name" supposed to be?
    This should be the name that remote servers see when this machine tries to send outgoing mail.
    Ideally this should match the reverse DNS of your IP address, that way when it connects to a remote server it says "Hi, I'm $hostname" and the remote server can lookup the machine's IP address and see the same result. This will reduce the problem of remote servers thinking you're sending them spam.
    If you only have a single IP address then this probably needs to be something like 'N.com'. If you don't have control over your reverse DNS then you're going to run into a problem.
    Also in the user accounts (in Workgroup Manager) what should the "mail server name" be? Is it the host name or the domain name?
    Off hand, I don't know.
    Also, why are all the default user email addresses [email protected] (the name I gave the server at setup)? Why doesn't the user accounts create [email protected] as the default address?
    Presumably because the mail server says it is 'server.N.com' and therefore any accounts on that machine would be [email protected]. Changing the domain name (as above) should fix that.

  • DNS for Mail service.

    I want to use java to send mail by smtp service.
    but for some hosts, the InetAddress class can't find out
    the ip address for the hosts, which need the MX flag in
    DNS Query data package(UDP).
    I can send the query and get the result from the ISP
    DSN server, but the replay UDP data is quit complex,
    I have not find a simple way to get the IP address from
    the UDP data.
    Can any one help me? Or Are you doing the same thing
    like that ? We can talk about it together.
    Thanks
    Scott

    HI Duker,
    I tred to use ur way.
    in the following code,
    an excpetion thrown .like
    "javax.naming.NoInitialContextException: Cannot instantiate class: com.sun.jndi.dns.DnsContextFactory. Root exception is java.lang.ClassNotFoundException: com.sun.jndi.dns.DnsContextFactory"
    And I try to find the related classes in the libs,
    but can not find it,so I can not get any related document about the usage of the related classes.
    Can you give me more help?
    Regards.
    Scott
    <code>
    package dnstest;
    import java.util.*;
    import javax.naming.*;
    import javax.naming.directory.*;
    public class dns_t {
    public static void main(String[] args) throws NamingException{
    Properties props = new Properties();
    props.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.dns.DnsContextFactory");
    props.put(Context.PROVIDER_URL, "dns://ns1.dns.com/thedomain.com");
    DirContext ictx = new InitialDirContext(props);
    Attributes attrs1 = ictx.getAttributes("www", new String[] {"A"});
    Set st = attrs1.keySet();
    Iterator it = st.iterator();
    NamingEnumeration it=attrs1.getAll();
    while (it.hasMoreElements()) {
    System.out.println((String)it.nextElement());
    Hi,
    You could try the JNDI-DNS early access service
    provider, it is basically a provider for the JDNI api
    that allows you to query a given DNS server.
    Checkout
    http://developer.java.sun.com/developer/earlyAccess/jnd
    /#DNS
    The below code is a simple test that looks up the IN A
    record for www.thedomain.com
    import java.util.*;
    import javax.naming.*;import javax.naming.directory.*;
    >
    public class DnsTest {
    public static void main(String[] args) {
    Properties props = new Properties();
    props.put(Context.INITIAL_CONTEXT_FACTORY,
    "com.sun.jndi.dns.DnsContextFactory");
    props.put(Context.PROVIDER_URLURL, "dns://ns1.dns.com/thedomain.com");
    DirContext ictx = new
    x = new InitialDirContext(props);
    Attributes attrs1 = ictx.getAttributes("www",
    ("www", new string[] {"A"});
    Set st = attrs1.keySet();
    Iterator it = st.iterator()
    while (it.hasNext()) {
    System.out.println((String)it.next());
    Hope this helps
    Duke Ronlund
    CoreJ.com
    I want to use java to send mail by smtp service.
    but for some hosts, the InetAddress class can'tfind
    out
    the ip address for the hosts, which need the MXflag
    in
    DNS Query data package(UDP).
    I can send the query and get the result from theISP
    DSN server, but the replay UDP data is quitcomplex,
    I have not find a simple way to get the IP address
    from
    the UDP data.
    Can any one help me? Or Are you doing the samething
    like that ? We can talk about it together.
    Thanks
    Scott

  • Set up secondary DNS for mail?

    When I first configured my server using the advance setup, I successfully setup my DNS services using a domain name for the primary zone that is not a registered domain. I have no intention of ever using the domain name I use internally on the net.
    I usually host my mail services with third-party hosting company and just use my server for file and print services. However, I recently purchased a new domain name and have considered using the mail services to host the domain. My question is:
    Do I need to setup a secondary zone for this domain, or should I start over and reconfigure my server? I had read that once you configure your primary DNS, it is hard to go back and reconfigure it.
    Also, once I have the DNS properly configured, it is my understanding that I'll just need to point the MX records at my hosting company towards my server to make it work, correct?

    If you're just looking for mail then there's no need to start from scratch - you can just tell the mail server to accept mail for your new domain in addition to the existing domain.
    Before you do this, though, make sure you have a) a static IP address and b) working reverse DNS for your IP address. If you don't have this then remote mail servers may not accept your mail since you look like a spammer.
    Apart from that, once you setup postfix to accept mail for your new domain then, yes, all you need to do is change your MX records.

  • OfficeJet Pro 8600 Plus e All in One fax to e-mail help

    I purchased this unit yesterday for my office and I would like to have incoming faxes get sent to my computer as an e-mail.  I have gone through the digital fax setup process but I am not receiving e-mails notifying me of a fax.  Here are some specifics:
    HP OfficeJet Pro 8600 Plus e All-in-one printer
    Dell Inspiron 570 with Windows 7 64 bit OS
    System is on a network but not through a server. Does anyone know how to set up the OfficeJet so it will send me e-mail notification when a fax is received?  Any help is appreciated.

    Hi,
    You may set Fax to Email feature from the printer EWS page:
    On the product control panel, touch the Right Arrow ( ), and then touch Setup . The setup menu displays.
    Touch the Down Arrow ( ), and then touch Reports .
    Touch Network Configuration Page . The product prints a network configuration page.
    Locate the printer IP Address / URL to access the EWS:
    Type the printer IP Address on you browser to access the EWS page
    Click the Fax tab
    Click Fax to E-mail / Network Folder under the left column
    Click Start Wizard and follow the steps to enable the feature.
    Select Forward the Faxes to an e-mail address and proceed.
    Follow the steps and provide your email account SMTP settings, similar to those used for Outlook
    NOTE: You may contact your ISP to obtain the settings of your email server.
    Click Save and Test to verify any of the settings is correct.
    If you use a public email server (e.g. Gmail) and cannot find the needed settings, please let me know and i will try helping you to locate the server settings.
    Say thanks by clicking the Kudos thumb up in the post.
    If my post resolve your problem please mark it as an Accepted Solution

Maybe you are looking for