Solved

sbs2008 mail from certain external domains delayed

Posted on 2011-02-15
10
739 Views
Last Modified: 2012-05-11
Pulling my hair out on this one - messages with attachments are getting delayed.  Only certain domains - othewrs work fine

Back pressure definately not an issue, I never see the message appear in Tracking
0
Comment
Question by:ImagesByMurray
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 5
10 Comments
 
LVL 76

Expert Comment

by:Alan Hardisty
ID: 34901606
The only real way to see where the delay occurs is to look at the email headers once the email arrives and examine them to see where the delay occurred.

Do you receive mail directly to your server or via a 3rd party who cleans and passes the mail on to you?
0
 

Author Comment

by:ImagesByMurray
ID: 34901672
directly - we have an mx pointing to the external address of our router - all std sbs ports forwarded in.  I've run MXtoolbox and TestExchangeConnectivity tools - all appear fine.
0
 
LVL 76

Accepted Solution

by:
Alan Hardisty earned 500 total points
ID: 34901697
Okay - do you have any headers of delayed emails to see where the problem might lie?

Is it all domains sending mail with attachments or random ones?

What speed is your Internet connection Up and Down?

What Anti-Spam tools are you using (built-in SBS anti-spam or 3rd party or both!)?
0
Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 

Author Comment

by:ImagesByMurray
ID: 34901780
seems to be random domain names, comcast is one.  checking on the headers.....

dsl  1.5mb-down, 768kb-up

as part of troubleshooting, i've uninstalled forefront, i've set SCL from 7 to 6 in Org Config | Hub Transport | Content Filtering
0
 
LVL 76

Expert Comment

by:Alan Hardisty
ID: 34901795
Okay - any email headers available?
0
 

Author Comment

by:ImagesByMurray
ID: 34903714
I think I found the issue; i turned on smtp logging on the recv connector (EMC | Server Cfg | Hub Transport).  I discovered a bunch of 421 4.3.2 Service not available messages -from there i looked more closely at the SBS connector, it's address range was incorrectly set to 192.168.0.0-192.168.0.0 (the router is at 192.168.0.1).  The Default connector *was* properly set.  I went ahead and changed it, now mail appears to be flowing from all domains.

I'm still a bit mystified why this problem suddenly occured, although i don't specifically remeber changing any settings on the receive connectors (I tend to run the wizards on SBS - this from hard experience), I'll chalk it to that

thanks alan for your lightening quick responses!  you got me pointed in the right direction.....
0
 
LVL 76

Expert Comment

by:Alan Hardisty
ID: 34909022
Glad you are sorted and yes - it's a bit of a mystery.  Glad that I helped steer you in the right direction.  Sounds like someone has been playing!

Don't forget to close the question down.

Alan
0
 

Author Comment

by:ImagesByMurray
ID: 34913542
Problem Solved!  As it turns out it was a Qwest branded Actiontech M100 DSL modem that was causing the issue.  Going through the SMTP logs on the server revealed:

MAIL FROM:<rapl****@comcast.net> SIZE=123982,
receiving message
250 2.1.0 Sender OK,
RCPT TO:<of****@cookshillcc.org>,
250 2.1.5 Recipient OK,
DATA,
354 Start mail input; end with <CRLF>.<CRLF>,
451 4.7.0 Timeout waiting for client input,

Again, only certain domains affected.  I've used a number of the DSL modems, but in all other cases, have DMZ'd all traffic to a Cisco Pix or Sonicwall.  In this case I implemented Port Forwarding - it looks like traffic on 25 was just getting dropped.......

I substituted a different make of DSL modem - things seem to be working perfectly
 
0
 

Author Closing Comment

by:ImagesByMurray
ID: 34913557
ultimately caused by qwest actiontech DSL modem dropping forwarded traffic on port 25
0
 
LVL 76

Expert Comment

by:Alan Hardisty
ID: 34914615
Oh what fun - hardware messing about.  Glad you sorted the problem and thanks for the points.

Alan
0

Featured Post

Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to resolve IMCEAEX NDRs in Exchange or Exchange Online related to invalid X500 addresses.
After hours on line I found a solution which pointed to the inherited Active Directory permissions . You have to give/allow permissions to the "Exchange trusted subsystem" for the user in the Active Directory...
In this video we show how to create an Address List in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Organization >> Ad…
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question