Greetings,

I've got courier set-up behind a NAT firewall.  Things work well except when
sending email to another internal domain.  DNS resolves this to the external
address of the FW and then couriertcpd rejects the inbound reply from the
internal mail server.  I'm stumped.  Where do I make a 'mailertable' type entry
or specifically tell Courier not to drop these connections?  I can send email
manually to the other internal mail server but courier kills the connection.
There is no FW running on the host at the time these logs were taken.

21:02:17.563468 10.0.1.20.33091 > 10.0.1.2.53: [udp sum ok]  863+ PTR?
xx.xxx.xx.xx.in-addr.arpa. (43) (DF) (ttl 64, id 39715, len 71)
  0x0000   4500 0047 9b23 4000 4011 cd41 0ade de82        [EMAIL PROTECTED]@..A....
  0x0010   0ade de02 8143 0035 0033 4e78 035f 0100        .....C.5.3Nx._..
  0x0020   0001 0000 0000 0000 02xx xxxx xxxx xxxx        .........xx.xxx.
  0x0030   3639 0236 3707 xxxx xxxx 6464 7204 6172        xx.xx.in-addr.ar
  0x0040   7061 0000 0c00 01                              pa.....
21:02:17.567121 10.0.1.2.53 > 10.0.1.20.33091: [udp sum ok]  863 1/2/0
xx.xxx.xx.xx.in-addr.arpa. PTR host.somedomain-on.com. (130) (ttl 64, id 13331,
len 158)
  0x0000   4500 009e 3413 0000 4011 73fb 0ade de02        [EMAIL PROTECTED]
  0x0010   0ade de82 0035 8143 008a 8697 035f 8180        .....5.C....._..
  0x0020   0001 0001 0002 0000 02xx xxxx xxxx xxxx        .........xx.xxx.
  0x0030   xxxx xxxx xx07 696e 2d61 6464 7204 6172        xx.xx.in-addr.ar
  0x0040   7061 0000 0c00 01c0 0c00 0c00 0100 008f        pa..............
  0x0050   9800 2516 546f xxxx xxxx xxxx xxxx xxxx        ..%.xxxxxxxxxxx-
  0x0060   xxxx xxxx xxxx xxxx xxxx xxxx xxxx xxxx        xxxxx.somedomain
  0x0070   xxxx xxxx xxxx 6100 c00f 0002 0001 0000        -on.com.........
  0x0080   8f98 0007 0464 6e73 31c0 4ec0 0f00 0200        .....dns1.N.....
  0x0090   0100 008f 9800 0704 646e 7332 c04e             ........dns2.N
21:02:17.637133 10.0.1.20.33091 > 10.0.1.2.53: [udp sum ok]  42240+ MX? aaa.com.
(25) (DF) (ttl 64, id 0, len 53)
  0x0000   4500 0035 0000 4000 4011 6877 0ade de82        [EMAIL PROTECTED]@.hw....
  0x0010   0ade de02 8143 0035 0021 a8b0 a500 0100        .....C.5.!......
  0x0020   0001 0000 0000 0000 046e xxxx xxxx xxxx        .........aaa.com
  0x0030   0000 0f00 01                                   .....
21:02:17.640998 10.0.1.2.53 > 10.0.1.20.33091: [udp sum ok]  42240* 1/4/1
aaa.com. MX ns.aaa.com. 10 (143) (ttl 64, id 13332, len 171)
  0x0000   4500 00ab 3414 0000 4011 73ed 0ade de02        [EMAIL PROTECTED]
  0x0010   0ade de82 0035 8143 0097 21c2 a500 8580        .....5.C..!.....
  0x0020   0001 0001 0004 0001 046e xxxx xxxx xxxx        .........aaa.com
  0x0030   0000 0f00 01c0 0c00 0f00 0100 0151 8000        .............Q..
  0x0040   0700 0a02 6e73 c00c c00c 0002 0001 0001        ....ns..........
  0x0050   5180 0011 036e 7331 036e xxxx xxxx xxxx        Q....blahbah.net
  0x0060   636f 6dc0 11c0 0c00 0200 0100 0151 8000        com..........Q..
  0x0070   0603 6e73 32c0 3cc0 0c00 0200 0100 0151        ..ns2.<........Q
  0x0080   8000 0a07 xxxx xxxx xxxx 32c0 40c0 0c00        [EMAIL PROTECTED]
  0x0090   0200 0100 0151 8000 02c0 27c0 2700 0100        .....Q....'.'...
  0x00a0   0100 0151 8000 04d8 bfd4 e6                    ...Q.......
21:02:17.653077 10.0.1.20.43456 > 10.0.1.2.25: S [tcp sum ok]
1737052379:1737052379(0) win 5840 <mss 1460,sackOK,timestamp 490183504
0,nop,wscale 0> (DF) (ttl 63, id 52107, len 60)
21:02:17.653464 10.0.1.2.25 > 10.0.1.20.43456: S [tcp sum ok]
3458998216:3458998216(0) ack 1737052380 win 57344 <mss 1460,nop,wscale
0,nop,nop,timestamp 325688717 490183504> (ttl 64, id 13333, len 60)
21:02:17.653507 10.0.1.20.43456 > 10.0.1.2.25: R [tcp sum ok]
1737052380:1737052380(0) win 0 (DF) (ttl 64, id 0, len 40)

I tried editing smtpaccess/filename and then makesmtpaccess but that didn't
work.  Tried changing TCPDOPTS in esmtpd to -nodnslookup (not that I really want
this) and it didn't work either!  After many many hours I'm resorting to the
list looking for a pointer hoping someone can help.

Regards,
Jamie




-------------------------------------------------------
This SF.Net email sponsored by: Free pre-built ASP.NET sites including
Data Reports, E-commerce, Portals, and Forums are available now.
Download today and enter to win an XBOX or Visual Studio .NET.
http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01
_______________________________________________
courier-users mailing list
[EMAIL PROTECTED]
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to