Форум русскоязычного сообщества Ubuntu


Следите за новостями русскоязычного сообщества Ubuntu в Twitter-ленте @ubuntu_ru_loco

Автор Тема: Что происходит с почтовым сервером (postfix+dovecot)? Помогите понять логи.  (Прочитано 7737 раз)

0 Пользователей и 1 Гость просматривают эту тему.

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
Настраивал сервер по этому мануалу.https://help.ubuntu.ru/wiki/%D0%BF%D0%BE%D1%87%D1%82%D0%BE%D0%B2%D1%8B%D0%B9_%D1%81%D0%B5%D1%80%D0%B2%D0%B5%D1%80_%D1%81%D0%BE_%D0%B2%D1%81%D0%B5%D0%BC_%D1%84%D0%B0%D1%80%D1%88%D0%B5%D0%BC_%D0%BD%D0%B0_10.04_lts
Дошел пока только до настройки веб интрейса, фильтры не настраивал.
Это что, спам рассылка с моего сервака? Лог растет очень-очень быстро, postfix пока остановил.
Dec 18 18:07:27 mail postfix/smtp[2755]: 92A6C48886: host mx.dca.untd.com[64.136.44.37] refused to talk to me: 550 IP айписервера in zen.spamhaus.org : Access Denied, please see www.spamhaus.org
Dec 18 18:07:28 mail postfix/smtp[2557]: 92A6C48886: to=<frank@thegillco.com>, relay=mx1.emailsrvr.com[98.129.185.131]:25, delay=43, delays=12/30/0.87/0.41, dsn=5.7.1, status=bounced (host mx1.emailsrvr.com[98.129.185.131] said: 554 5.7.1 ACL dns_rbl; Client host [айписервера] blocked using sa-ip4tset.blagr.emailsrvr.com=127.22.0.2 Senderscore. Please visit https://senderscore.org/rtbl/ for more information on why this message could not be delivered (in reply to RCPT TO command))
Dec 18 18:07:28 mail postfix/smtp[2817]: connect to cluster6.us.messagelabs.com[216.82.251.38]:25: Connection timed out
Dec 18 18:07:28 mail postfix/smtp[2406]: 846D648880: to=<frankn@globaleventsmgmt.com>, relay=mailstore1.secureserver.net[68.178.213.243]:25, delay=27, delays=3.4/22/0.98/0, dsn=4.0.0, status=deferred (host mailstore1.secureserver.net[68.178.213.243] refused to talk to me: 554 p3plibsmtp02-02.prod.phx3.secureserver.net bizsmtp IB105. Connection refused. айписервера is listed on the Exploits Block List (XBL) <http://www.spamhaus.org/query/ip/айписервера> Please visit http://www.spamhaus.org/xbl/ for more information.)
Dec 18 18:07:28 mail postfix/smtp[2598]: 92A6C48886: to=<frank@thedelaneys.us>, relay=mx.fluidmind.org[216.248.55.155]:25, delay=43, delays=12/30/1.3/0.17, dsn=4.7.1, status=deferred (host mx.fluidmind.org[216.248.55.155] said: 450 4.7.1 Client host rejected: cannot find your hostname, [айписервера] (in reply to RCPT TO command))
Dec 18 18:07:28 mail postfix/smtp[2351]: 19A5B48705: host mx1.fuse.net[64.8.71.15] refused to talk to me: 550 5.7.1 [C16] SBL-XBL Restriction:  See https://www.spamhaus.org/query/ip/айписервера
Dec 18 18:07:28 mail postfix/smtp[2819]: 846D648880: to=<frank_nezrick@hotmail.com>, relay=mx1.hotmail.com[65.54.188.94]:25, delay=27, delays=3.4/23/0.73/0.21, dsn=5.0.0, status=bounced (host mx1.hotmail.com[65.54.188.94] said: 550 DY-001 (BAY004-MC2F15) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:28 mail postfix/smtp[2557]: D9A0A4886B: to=<asd3@adelhia.net>, relay=none, delay=26, delays=8.2/17/0.06/0, dsn=5.4.4, status=bounced (Host or domain name not found. Name service error for name=adelhia.net type=AAAA: Host not found)
Dec 18 18:07:28 mail postfix/smtp[2819]: 846D648880: to=<franknginger@hotmail.com>, relay=mx1.hotmail.com[65.54.188.94]:25, delay=27, delays=3.4/23/0.73/0.21, dsn=5.0.0, status=bounced (host mx1.hotmail.com[65.54.188.94] said: 550 DY-001 (BAY004-MC2F15) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:28 mail postfix/smtp[2819]: 846D648880: to=<franknguyen79@hotmail.com>, relay=mx1.hotmail.com[65.54.188.94]:25, delay=27, delays=3.4/23/0.73/0.21, dsn=5.0.0, status=bounced (host mx1.hotmail.com[65.54.188.94] said: 550 DY-001 (BAY004-MC2F15) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:28 mail postfix/smtp[2819]: 846D648880: lost connection with mx1.hotmail.com[65.54.188.94] while sending RCPT TO
Dec 18 18:07:28 mail postfix/smtp[2263]: 92A6C48886: to=<frank@repautos.com>, relay=repautos.com[69.60.160.138]:25, delay=43, delays=12/29/1.5/0.39, dsn=5.0.0, status=bounced (host repautos.com[69.60.160.138] said: 550-"JunkMail rejected - (mail.домен.ru) [айписервера]:42966 is in an RBL, 550 see https://www.spamhaus.org/query/ip/айписервера" (in reply to RCPT TO command))
Dec 18 18:07:28 mail postfix/smtp[2815]: connect to 40debts.org[199.59.243.120]:25: Connection timed out
Dec 18 18:07:28 mail postfix/smtp[2815]: 36E57487B3: to=<feliciat@40debts.org>, relay=none, delay=1135, delays=1067/35/33/0, dsn=4.4.1, status=deferred (connect to 40debts.org[199.59.243.120]:25: Connection timed out)
Dec 18 18:07:28 mail postfix/smtp[2820]: connect to cluster4.us.messagelabs.com[216.82.251.34]:25: Connection timed out
Dec 18 18:07:28 mail postfix/smtp[2785]: 92A6C48886: to=<frank@theoretmartel.ca>, relay=exch4.insuremail.com[204.155.63.76]:25, delay=44, delays=12/30/1.6/0.28, dsn=5.0.0, status=bounced (host exch4.insuremail.com[204.155.63.76] said: 554-Service unavailable; Client host [rev-айписервера.tula.net] blocked using 554-Barracuda Reputation; 554 http://www.barracudanetworks.com/reputation/?r=1&ip=айписервера (in reply to RCPT TO command))
Dec 18 18:07:28 mail postfix/smtp[2785]: 92A6C48886: lost connection with exch4.insuremail.com[204.155.63.76] while sending DATA command
Dec 18 18:07:28 mail postfix/smtp[2263]: D9A0A4886B: host mx00.gmx.com[74.208.5.4] refused to talk to me: 554-gmx.net (mxgmxus004) Nemesis ESMTP Service not available 554-No SMTP service 554-IP address is black listed. 554 For explanation visit http://postmaster.gmx.com/en/error-messages?ip=айписервера&c=bl
Dec 18 18:07:28 mail postfix/smtp[2802]: 92A6C48886: host mailin-02.mx.aol.com[152.163.0.100] refused to talk to me: 554- (RTR:DU)  https://postmaster.aol.com/error-codes#554rtrdu 554  Connecting IP: айписервера
Dec 18 18:07:28 mail postfix/smtp[2818]: 846D648880: host mx.west.cox.net[68.6.19.3] refused to talk to me: 554 fed1rmimpi309 cox айписервера blocked.  Error Code: IPBL0011 - Refer to Error Codes section at http://postmaster.cox.net/confluence/display/postmaster/Error+Codes for more information.
Dec 18 18:07:28 mail postfix/smtp[2820]: connect to cluster4.us.messagelabs.com[216.82.250.179]:25: Connection refused
Dec 18 18:07:28 mail postfix/smtp[2819]: D9A0A4886B: to=<asd500@arabia.com>, relay=mx.linkdatacenter.net[41.178.51.174]:25, delay=26, delays=8.2/17/0.59/0, dsn=4.5.0, status=deferred (host mx.linkdatacenter.net[41.178.51.174] refused to talk to me: 550 5.5.0 айписервера is blacklisted by FortiGuard. This email from IP  has been rejected. The email message was detected as spam.)
Dec 18 18:07:29 mail postfix/smtp[2817]: 3E3784872D: to=<fairhun@abc.com>, relay=cluster6a.us.messagelabs.com[216.82.251.230]:25, delay=1525, delays=1456/37/32/0.22, dsn=4.0.0, status=deferred (host cluster6a.us.messagelabs.com[216.82.251.230] said: 421 Service Temporarily Unavailable (in reply to RCPT TO command))
Dec 18 18:07:29 mail postfix/smtp[2406]: 846D648880: host mta5.am0.yahoodns.net[98.138.112.34] said: 421 4.7.0 [TS01] Messages from айписервера temporarily deferred due to user complaints - 4.16.55.1; see https://help.yahoo.com/kb/postmaster/SLN3434.html (in reply to MAIL FROM command)
Dec 18 18:07:29 mail postfix/smtp[2406]: 846D648880: lost connection with mta5.am0.yahoodns.net[98.138.112.34] while sending RCPT TO
Dec 18 18:07:29 mail postfix/smtp[2815]: D9A0A4886B: to=<asd45693@gmail.com>, relay=gmail-smtp-in.l.google.com[64.233.165.27]:25, conn_use=2, delay=26, delays=8.2/18/0.2/0.38, dsn=5.7.1, status=bounced (host gmail-smtp-in.l.google.com[64.233.165.27] said: 550-5.7.1 [айписервера] The IP you're using to send mail is not authorized to 550-5.7.1 send email directly to our servers. Please use the SMTP relay at your 550-5.7.1 service provider instead. Learn more at 550 5.7.1  https://support.google.com/mail/answer/10336 o197si10997043lfe.248 - gsmtp (in reply to end of DATA command))
Dec 18 18:07:29 mail postfix/smtp[2774]: 846D648880: to=<frank@philator.com>, relay=inbound.philator.com.netsolmail.net[209.17.115.10]:25, delay=28, delays=3.4/23/1.1/0.16, dsn=5.3.0, status=bounced (host inbound.philator.com.netsolmail.net[209.17.115.10] said: 553 5.3.0 айписервера Rejected - see http://www.spamhaus.org (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2795]: connect to ff-ip4-mx-vip2.prodigy.net[144.160.159.22]:25: Connection refused
Dec 18 18:07:29 mail postfix/smtp[2263]: D9A0A4886B: to=<asd500@email.com>, relay=mx01.gmx.com[74.208.5.27]:25, delay=27, delays=8.2/18/0.76/0, dsn=4.0.0, status=deferred (host mx01.gmx.com[74.208.5.27] refused to talk to me: 554-gmx.net (mxgmxus003) Nemesis ESMTP Service not available 554-No SMTP service 554-IP address is black listed. 554 For explanation visit http://postmaster.gmx.com/en/error-messages?ip=айписервера&c=bl)
Dec 18 18:07:29 mail postfix/smtp[2820]: 45B17479CD: host cluster4.us.messagelabs.com[216.82.242.179] refused to talk to me: 450 Requested action aborted [7.2] 8605, please visit www.messagelabs.com/support for more details about this error message.
Dec 18 18:07:29 mail postfix/smtp[2730]: connect to mail.msn.fr[194.51.3.49]:25: Connection timed out
Dec 18 18:07:29 mail postfix/smtp[2730]: A4A2F4886C: to=<fleur3000@msn.fr>, relay=none, delay=576, delays=507/39/30/0, dsn=4.4.1, status=deferred (connect to mail.msn.fr[194.51.3.49]:25: Connection timed out)
Dec 18 18:07:29 mail postfix/smtp[2891]: 846D648880: to=<frank@nfeggs.ca>, relay=nfeggs.ca[69.174.52.57]:25, delay=28, delays=3.4/23/1.4/0.27, dsn=5.0.0, status=bounced (host nfeggs.ca[69.174.52.57] said: 550-"JunkMail rejected - (mail.домен.ru) [айписервера]:53475 is in an RBL, 550 see https://www.spamhaus.org/query/ip/айписервера" (in reply to RCPT TO command))
Dec 18 18:07:29 mail postfix/smtp[2820]: connect to cluster4.us.messagelabs.com[216.82.242.33]:25: Connection refused
Dec 18 18:07:29 mail postfix/smtp[2820]: 45B17479CD: to=<donna.yaoath@timken.com>, relay=none, delay=5515, delays=5446/38/31/0, dsn=4.4.1, status=deferred (connect to cluster4.us.messagelabs.com[216.82.242.33]:25: Connection refused)
Dec 18 18:07:29 mail postfix/smtp[2263]: B067848940: to=<arun.sen@CDCGlobeleq.com>, relay=none, delay=22, delays=7.7/14/0.24/0, dsn=5.4.4, status=bounced (Host or domain name not found. Name service error for name=CDCGlobeleq.com type=AAAA: Host found but no data record of requested type)
Dec 18 18:07:29 mail postfix/smtp[2755]: 92A6C48886: to=<frankthein@netzero.com>, relay=mx.vgs.untd.com[64.136.52.37]:25, delay=44, delays=12/29/3.2/0, dsn=4.0.0, status=deferred (host mx.vgs.untd.com[64.136.52.37] refused to talk to me: 550 IP айписервера in zen.spamhaus.org : Access Denied, please see www.spamhaus.org )
Dec 18 18:07:29 mail postfix/smtp[2802]: 92A6C48886: host mailin-02.mx.aol.com[152.163.0.99] refused to talk to me: 554- (RTR:DU)  https://postmaster.aol.com/error-codes#554rtrdu 554  Connecting IP: айписервера
Dec 18 18:07:29 mail postfix/smtp[2815]: B067848940: to=<aruns@catsglobal.co.in>, relay=aspmx.l.google.com[173.194.71.26]:25, delay=22, delays=7.7/14/0.33/0.19, dsn=5.1.1, status=bounced (host aspmx.l.google.com[173.194.71.26] said: 550-5.1.1 The email account that you tried to reach does not exist. Please try 550-5.1.1 double-checking the recipient's email address for typos or 550-5.1.1 unnecessary spaces. Learn more at 550 5.1.1  https://support.google.com/mail/answer/6596 r193si11046248lfe.1 - gsmtp (in reply to RCPT TO command))
Dec 18 18:07:29 mail postfix/smtp[2406]: 846D648880: to=<frankphip@yahoo.ca>, relay=mta6.am0.yahoodns.net[66.196.118.37]:25, delay=28, delays=3.4/23/1.3/0.17, dsn=4.7.0, status=deferred (host mta6.am0.yahoodns.net[66.196.118.37] said: 421 4.7.0 [TS01] Messages from айписервера temporarily deferred due to user complaints - 4.16.55.1; see https://help.yahoo.com/kb/postmaster/SLN3434.html (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtpd[1935]: connect from unknown[192.168.1.1]
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd3455@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd353@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd403@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd4@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd521@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2776]: connect to mail.accounts2.com[216.151.178.234]:25: Connection timed out
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd5321@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2776]: 7A9B447B0F: to=<profile@accounts2.com>, relay=none, delay=4545, delays=4476/34/35/0, dsn=4.4.1, status=deferred (connect to mail.accounts2.com[216.151.178.234]:25: Connection timed out)
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: to=<asd_4@hotmail.com>, relay=mx3.hotmail.com[65.55.37.104]:25, delay=27, delays=8.2/18/0.76/0.23, dsn=5.0.0, status=bounced (host mx3.hotmail.com[65.55.37.104] said: 550 DY-001 (COL004-MC3F34) Unfortunately, messages from айписервера weren't sent. Please contact your Internet service provider. You can tell them that Hotmail does not relay dynamically-assigned IP ranges. You can also refer your provider to http://mail.live.com/mail/troubleshooting.aspx#errors. (in reply to MAIL FROM command))
Dec 18 18:07:29 mail postfix/smtp[2785]: D9A0A4886B: lost connection with mx3.hotmail.com[65.55.37.104] while sending RCPT TO
Dec 18 18:07:29 mail postfix/smtp[2263]: B067848940: to=<arunshan99@rediffmail.com>, relay=mx.rediffmail.rediff.akadns.net[119.252.147.10]:25, delay=22, delays=7.7/14/0.47/0, dsn=4.4.2, status=deferred (lost connection with mx.rediffmail.rediff.akadns.net[119.252.147.10] while receiving the initial server greeting)
Dec 18 18:07:29 mail postfix/smtp[2263]: B067848940: to=<arunsharma5000@rediffmail.com>, relay=mx.rediffmail.rediff.akadns.net[119.252.147.10]:25, delay=22, delays=7.7/14/0.47/0, dsn=4.4.2, status=deferred (lost connection with mx.rediffmail.rediff.akadns.net[119.252.147.10] while receiving the initial server greeting)
Dec 18 18:07:29 mail postfix/smtp[2815]: B067848940: to=<arun@satx.rr.com>, relay=cdptpa-pub-iedge-vip.email.rr.com[107.14.166.70]:25, delay=22, delays=7.7/14/0.33/0, dsn=4.0.0, status=deferred (host cdptpa-pub-iedge-vip.email.rr.com[107.14.166.70] refused to talk to me: 554 ERROR: Mail Refused - See http://www.spamhaus.org/query/bl?ip=айписервера)
Dec 18 18:07:30 mail postfix/smtp[2795]: 846D648880: to=<frankngin@sbcglobal.net>, relay=nb-mx-vip1.prodigy.net[207.115.36.20]:25, delay=29, delays=3.4/23/1.8/0.24, dsn=5.3.0, status=bounced (host nb-mx-vip1.prodigy.net[207.115.36.20] said: 553 5.3.0 nlpi176 DNSBL:ATTRBL 521< айписервера >_is_blocked.__For_information_see_http://att.net/blocks (in reply to MAIL FROM command))
Dec 18 18:07:30 mail postfix/smtp[2736]: connect to smtp.mchsi.com[97.64.187.45]:25: Connection timed out
Dec 18 18:07:30 mail postfix/smtp[1459]: connect to mail.bcaa.com[192.197.50.169]:25: Connection timed out
Dec 18 18:07:30 mail postfix/smtp[2736]: A32F043241: to=<356nuget@mchsi.com>, relay=none, delay=8826, delays=8756/39/31/0, dsn=4.4.1, status=deferred (connect to smtp.mchsi.com[97.64.187.45]:25: Connection timed out)
Dec 18 18:07:30 mail postfix/cleanup[1926]: 7D90348948: message-id=<2f6e5149081cfaf84e8d6aa88bf189fc@secure.net>
Dec 18 18:07:30 mail postfix/smtp[2555]: connect to mxmta.sympatico.ca[67.69.240.20]:25: Connection timed out
Dec 18 18:07:30 mail postfix/smtp[2818]: 846D648880: to=<frankngail@cox.net>, relay=mx.east.cox.net[68.1.17.3]:25, delay=29, delays=3.4/22/3/0, dsn=4.0.0, status=deferred (host mx.east.cox.net[68.1.17.3] refused to talk to me: 554 eastrmimpi311 cox айписервера blocked.  Error Code: IPBL0001 - Refer to Error Codes section at http://postmaster.cox.net/confluence/display/postmaster/Error+Codes for more information.)
Dec 18 18:07:30 mail postfix/smtp[2802]: 92A6C48886: host mailin-03.mx.aol.com[152.163.0.99] refused to talk to me: 554- (RTR:DU)  https://postmaster.aol.com/error-codes#554rtrdu 554  Connecting IP: айписервера
Dec 18 18:07:30 mail postfix/cleanup[1936]: 6265548950: message-id=<20151218150730.6265548950@mail.домен.ru>
Dec 18 18:07:30 mail postfix/qmgr[1102]: 6265548950: from=<>, size=50732, nrcpt=1 (queue active)
Dec 18 18:07:30 mail postfix/smtp[2814]: 846D648880: to=<frank.phelan@indoxservices.com>, relay=d21389a.ess.barracudanetworks.com[64.235.154.109]:25, delay=29, delays=3.4/23/2.2/0.86, dsn=5.0.0, status=bounced (host d21389a.ess.barracudanetworks.com[64.235.154.109] said: 550 No such user (frank.phelan@indoxservices.com) (in reply to RCPT TO command))
Dec 18 18:07:30 mail postfix/bounce[2892]: 1959E4885B: sender non-delivery notification: 6265548950
Dec 18 18:07:30 mail postfix/qmgr[1102]: 7D90348948: from=<customers@secure.net>, size=39097, nrcpt=30 (queue active)
Dec 18 18:07:30 mail postfix/smtp[2263]: B067848940: host in.mx2.mailhostbox.com[203.13.40.16] refused to talk to me: 521-5.3.2 Service currently unavailable 521 5.3.2 Please see http://support.mailhostbox.com/email-administrators-guide/error-codes for explanation of the problem.
Dec 18 18:07:30 mail postfix/smtp[2891]: B067848940: to=<arunsagar84@gmail.com>, relay=gmail-smtp-in.l.google.com[64.233.164.27]:25, delay=23, delays=7.7/14/0.24/0.88, dsn=5.7.1, status=bounced (host gmail-smtp-in.l.google.com[64.233.164.27] said: 550-5.7.1 [айписервера] The IP you're using to send mail is not authorized to 550-5.7.1 send email directly to our servers. Please use the SMTP relay at your 550-5.7.1 service provider instead. Learn more at 550 5.7.1  https://support.google.com/mail/answer/10336 19si11041808lfr.63 - gsmtp (in reply to end of DATA command))
Dec 18 18:07:30 mail postfix/error[2726]: 7D90348948: to=<ashannon25@comcast.net>, relay=none, delay=7.2, delays=7.1/0.03/0/0.02, dsn=4.0.0, status=deferred (delivery temporarily suspended: host mx1.comcast.net[96.114.157.80] refused to talk to me: 554 resimta-po-11v.sys.comcast.net comcast айписервера found on one or more DNSBLs, see http://postmaster.comcast.net/smtp-error-codes.php#BL000101)
Dec 18 18:07:30 mail postfix/smtp[2891]: B067848940: to=<arunsavalla@gmail.com>, relay=gmail-smtp-in.l.google.com[64.233.164.27]:25, delay=23, delays=7.7/14/0.24/0.88, dsn=5.7.1, status=bounced (host gmail-smtp-in.l.google.com[64.233.164.27] said: 550-5.7.1 [айписервера] The IP you're using to send mail is not authorized to 550-5.7.1 send email directly to our servers. Please use the SMTP relay at your 550-5.7.1 service provider instead. Learn more at 550 5.7.1  https://support.google.com/mail/answer/10336 19si11041808lfr.63 - gsmtp (in reply to end of DATA command))
Dec 18 18:07:30 mail postfix/smtp[2891]: B067848940: to=<arunselva@gmail.com>, relay=gmail-smtp-in.l.google.com[64.233.164.27]:25, delay=23, delays=7.7/14/0.24/0.88, dsn=5.7.1, status=bounced (host gmail-smtp-in.l.google.com[64.233.164.27] said: 550-5.7.1 [айписервера] The IP you're using to send mail is not authorized to 550-5.7.1 send email directly to our servers. Please use the SMTP relay at your 550-5.7.1 service provider instead. Learn more at 550 5.7.1  https://support.google.com/mail/answer/10336 19si11041808lfr.63 - gsmtp (in reply to end of DATA command))
« Последнее редактирование: 21 Декабря 2015, 12:37:48 от aleksandrnovikov »

Оффлайн Karl500

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 2267
    • Просмотр профиля
Похоже на то, что вы - открытый релей. Во всяком случае, ваш адрес в черных списках, и от вас другие сервера отказываются принимать почту. Включите сервер и проверьтесь на открытый релей (например, тут http://www.aupads.org/test-relay.html)
Если все ок, то рассылают ваши (легитимные или нет) пользователи.

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
Проверил на открытый relay - тест положительный. Закрыл порты, а письма все равно отправляются. Как узнать где эта зараза сидит?
/etc/postfix/main.cf
# See /usr/share/postfix/main.cf.dist for a commented, more complete version


# Debian specific:  Specifying a file name will cause the first
# line of that file to be used as the name.  The Debian default
# is /etc/mailname.
#myorigin = /etc/mailname

smtpd_banner = $myhostname ESMTP $mail_name (Ubuntu)
biff = no

# appending .domain is the MUA's job.
append_dot_mydomain = no

# Uncomment the next line to generate "delayed mail" warnings
#delay_warning_time = 4h

readme_directory = no

# TLS parameters
smtpd_tls_auth_only = yes
smtpd_tls_cert_file = /etc/ssl/certs/domen.crt
smtpd_tls_key_file = /etc/ssl/private/domen.key
smtpd_use_tls = yes
smtpd_tls_session_cache_database = btree:${data_directory}/smtpd_scache
smtp_tls_session_cache_database = btree:${data_directory}/smtp_scache

# See /usr/share/doc/postfix/TLS_README.gz in the postfix-doc package for
# information on enabling SSL in the smtp client.

smtpd_relay_restrictions = permit_mynetworks permit_sasl_authenticated defer_unauth_destination
myhostname = mail.domen.ru
mydomain = domen.ru
alias_maps = hash:/etc/aliases
alias_database = hash:/etc/aliases
myorigin = domen.ru
mydestination = $myhostname, localhost
relayhost =
relay_domains =
mynetworks = 127.0.0.0/8
mailbox_size_limit = 0
recipient_delimiter = +
inet_interfaces = all
inet_protocols = all
virtual_alias_domains =
virtual_alias_maps = proxy:mysql:/etc/postfix/mysql-virtual_forwardings.cf, mysql:/etc/postfix/mysql-virtual_email2email.cf
virtual_mailbox_domains = proxy:mysql:/etc/postfix/mysql-virtual_domains.cf
virtual_mailbox_maps = proxy:mysql:/etc/postfix/mysql-virtual_mailboxes.cf
virtual_mailbox_base = /home/vmail
virtual_uid_maps = static:5000
virtual_gid_maps = static:5000
smtpd_sasl_auth_enable = yes
broken_sasl_auth_clients = yes
# Запретить ETRN команду
smtpd_etrn_restrictions = reject
# Запретить VRFY команду
disable_vrfy_command = yes
#Требовать наличие EHLO (HELO) команды
smtpd_helo_required = yes
smtpd_sasl_authenticated_header = yes
smtpd_sasl_security_options = noanonymous
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination
#smtpd_recipient_restrictions = permit_sasl_authenticated, reject_unauth_destination
transport_maps = proxy:mysql:/etc/postfix/mysql-virtual_transports.cf
proxy_read_maps = $local_recipient_maps $mydestination $virtual_alias_maps $virtual_alias_domains $virtual_mailbox_maps $virtual_mailbox_domains $relay_recipient_maps $relay_domains $canonical_maps $send$
« Последнее редактирование: 21 Декабря 2015, 12:59:19 от aleksandrnovikov »

Оффлайн Karl500

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 2267
    • Просмотр профиля
Что значит "закрыл порты"? По релею - смотрите внимательно цепочки проверок smtpd_*_restrictions

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
Что значит "закрыл порты"? По релею - смотрите внимательно цепочки проверок smtpd_*_restrictions
Извините за неточность, закрыл порты на роутере (25,465,143,993).
добавил в конфиг
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination, reject_unknown_recipient_domain, reject_non_fqdn_recipient, reject_unverified_recipient
smtpd_relay_restrictions = permit_mynetworks permit_sasl_authenticated defer_unauth_destination
smtpd_sender_restrictions = yes
« Последнее редактирование: 21 Декабря 2015, 14:03:20 от aleksandrnovikov »

Оффлайн AnrDaemon

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 28469
    • Просмотр профиля
Хотите получить помощь? Потрудитесь представить запрошенную информацию в полном объёме.

Прежде чем [Отправить], нажми [Просмотр] и прочти собственное сообщение. Сам-то понял, что написал?…

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
-defer +reject
Сделал smtpd_relay_restrictions = permit_mynetworks permit_sasl_authenticated reject_unauth_destinationНе помогло.

Оффлайн Karl500

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 2267
    • Просмотр профиля
А вы уверены, что у вас сервер не скомпрометирован? Т.е. возможно, письма отправляет самый что ни на есть "_sasl_authenticated" пользователь...

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
На 100% конечно не уверен. Какие у меня варианты? Поменять пароли, переделать сертификаты или вообще сервер с нуля сделать?

Оффлайн AnrDaemon

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 28469
    • Просмотр профиля
Почитать логи… выяснить, с какого адреса входят письма.
Хотите получить помощь? Потрудитесь представить запрошенную информацию в полном объёме.

Прежде чем [Отправить], нажми [Просмотр] и прочти собственное сообщение. Сам-то понял, что написал?…

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
Почитать логи… выяснить, с какого адреса входят письма.
Вы имеете ввиду локальные адреса? Ведь с внешних не могут, т.к. порты на роутере закрыты.

Оффлайн Karl500

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 2267
    • Просмотр профиля
Закрыв на роутере 25 порт (если и правда вы его закрыли) вы перестали принимать письма от других серверов. Клиенты посылают (должны посылать) почту по порту 587.

Оффлайн AnrDaemon

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 28469
    • Просмотр профиля
Хотите получить помощь? Потрудитесь представить запрошенную информацию в полном объёме.

Прежде чем [Отправить], нажми [Просмотр] и прочти собственное сообщение. Сам-то понял, что написал?…

Оффлайн Karl500

  • Заслуженный пользователь
  • Старожил
  • *
  • Сообщений: 2267
    • Просмотр профиля
Угу, но 465 (по утверждению ТС) он закрыл.

Оффлайн aleksandrnovikov

  • Автор темы
  • Любитель
  • *
  • Сообщений: 57
    • Просмотр профиля
Угу, но 465 (по утверждению ТС) он закрыл.
Еще уточню: я отключил на роутере правила перенаправления портов, а после проверил порты на доступность через специальный сервис.

 

Страница сгенерирована за 0.036 секунд. Запросов: 25.